VYPR
Medium severity5.5NVD Advisory· Published Apr 19, 2023· Updated Jun 17, 2026

CVE-2023-28123

CVE-2023-28123

Description

A permission misconfiguration in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow an user to hijack VPN credentials while UID VPN is starting.This vulnerability is fixed in Version 0.62.3 and later.

Affected products

3
  • cpe:2.3:a:ui:desktop:*:*:*:*:*:windows:*:*
    Range: <0.62.3.0
  • UI Desktop/UI Desktop for Windowsdescription
  • Range: <=0.59.1.71

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.