Metrics
Affected Vendors & Products
Mon, 29 Sep 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Apple
Apple macos Ihongren Ihongren pptp-vpn |
|
Vendors & Products |
Apple
Apple macos Ihongren Ihongren pptp-vpn |
Mon, 29 Sep 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A weakness has been identified in iHongRen pptp-vpn 1.0/1.0.1 on macOS. This issue affects the function shouldAcceptNewConnection of the file HelpTool/HelperTool.m of the component XPC Service. This manipulation causes missing authentication. The attack can only be executed locally. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | iHongRen pptp-vpn XPC Service HelperTool.m shouldAcceptNewConnection missing authentication | |
Weaknesses | CWE-287 CWE-306 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-09-29T00:32:06.122Z
Reserved: 2025-09-28T06:13:27.150Z
Link: CVE-2025-11130

No data.

Status : Received
Published: 2025-09-29T01:15:35.017
Modified: 2025-09-29T01:15:35.017
Link: CVE-2025-11130

No data.