Vulnerability Details CVE-2012-3484
Tunnelblick 3.3beta20 and earlier relies on a test for specific ownership and permissions to determine whether a program can be safely executed, which allows local users to bypass intended access restrictions and gain privileges via a (1) user-mountable image or (2) network share.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.2%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2012-3484
-
cpe:2.3:a:google:tunnelblick:*