CVE-2025-12286 | VeePN up to 1.6.2 AVService avservice.exe unquoted search path
A vulnerability, which was classified as problematic, has been found in VeePN up to 1.6.2. This affects an unknown function of the file C:\Program Files (x86)\VeePN\avservice\avservice.exe of the component AVService. This manipulation causes unquoted search path.
This vulnerability appears as CVE-2025-12286. The attack requires local access. There is no available exploit.
The vendor was contacted early about this disclosure but did not respond in any way.