CVE-2018-11479 | WindScribe up to 1.81 VPN WindScribeService.exe lpCommandLine input validation (ID 156222 / EDB-48021)
A vulnerability has been found in WindScribe up to 1.81 and classified as critical. This affects an unknown function of the file WindScribeService.exe of the component VPN. The manipulation of the argument lpCommandLine as part of Named Pipe leads to improper input validation.
This vulnerability is uniquely identified as CVE-2018-11479. Local access is required to approach this attack. Moreover, an exploit is present.