CVE-2026-91841

HIGH Status: Received

CVSS Scores

CVSS v3.x Base Score
7.8
HIGH

Description

A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploit this vulnerability by injecting a newline character into the CA-File path. This manipulation allows the user to execute arbitrary commands as the root user, leading to local privilege escalation.

Published
September 25, 2026 6:17 PM
Last Modified
September 25, 2026 7:17 PM
Source
[email protected]

Weaknesses (CWE)

CWE-93

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.