VYPR
High severity7.8NVD Advisory· Published Jul 26, 2018· Updated Jun 17, 2026

CVE-2018-10900

CVE-2018-10900

Description

Network Manager VPNC plugin (aka networkmanager-vpnc) before version 1.2.6 is vulnerable to a privilege escalation attack. A new line character can be used to inject a Password helper parameter into the configuration data passed to VPNC, allowing an attacker to execute arbitrary commands as root.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.