CVE-2022-46782: Stormshield SSL VPN Client

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered in Stormshield SSL VPN Client before 3.2.0. A logged-in user, able to only launch the VPNSSL Client, can use the OpenVPN instance to execute malicious code as administrator on the local machine.

Affected products

  • Stormshield SSL VPN Client: before 3.2.0 (fixed in 3.2.0)

Published 2023-08-05. Last modified 2026-06-17.