Vulnerability Details CVE-2018-4004
An exploitable privilege escalation vulnerability exists in the Shimo VPN 4.1.5.1 helper service in the disconnectService functionality. A non-root user is able to kill any privileged process on the system. An attacker would need local access to the machine for a successful exploit.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.5%
CVSS Severity
CVSS v3 Score 7.1
CVSS v2 Score 4.9
Products affected by CVE-2018-4004
-
cpe:2.3:a:shimovpn:shimo_vpn:4.1.5.1