Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-63q4-8wcf-wg8f

Опубликовано: 08 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.

EPSS

Процентиль: 91%
0.06993
Низкий

7.2 High

CVSS3

Дефекты

CWE-283
CWE-434

Связанные уязвимости

CVSS3: 9.8
ubuntu
12 месяцев назад

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.

CVSS3: 9.8
nvd
12 месяцев назад

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.

CVSS3: 9.8
debian
12 месяцев назад

OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be lo ...

CVSS3: 9.8
fstec
около 1 года назад

Уязвимость компонента Plug-in Handler программного обеспечения OpenVPN, позволяющая нарушителю загружать произвольные модули

EPSS

Процентиль: 91%
0.06993
Низкий

7.2 High

CVSS3

Дефекты

CWE-283
CWE-434