Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3wxw-5w97-2cvf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

OpenVPN Access Server older than version 2.8.4 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.

OpenVPN Access Server older than version 2.8.4 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.

EPSS

Процентиль: 41%
0.00188
Низкий

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 5 лет назад

OpenVPN Access Server older than version 2.8.4 and version 2.9.5 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.

CVSS3: 7.5
nvd
больше 5 лет назад

OpenVPN Access Server older than version 2.8.4 and version 2.9.5 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.

EPSS

Процентиль: 41%
0.00188
Низкий

Дефекты

CWE-613