CVE-2014-5455

Unquoted Windows search path vulnerability in the ptservice service prior to PrivateTunnel version 3.0 (Windows) and OpenVPN Connect version 3.1 (Windows) allows local users to gain privileges via a crafted program.exe file in the %SYSTEMDRIVE% folder.

medium 5.3 CVSS 3.1
Published: Aug 25, 2014
Modified: May 28, 2026
Vendor: Openvpn
Product: Openvpn
Versions: 2.1.28.0,2.3.8