Security Advisory

CVE-2025-43917

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-04-19 00:00:00
Last updated 2025-04-21 15:13:55
Assigner mitre
CVSS score 8.2
State PUBLISHED

Description

In Pritunl Client before 1.3.4220.57, an administrator with access to /Applications can escalate privileges after uninstalling the product. Specifically, an administrator can insert a new file at the pathname of the removed pritunl-service file. This file then is executed by a LaunchDaemon as root.