Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p428-592p-6c59

Опубликовано: 15 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4.1

Описание

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

EPSS

Процентиль: 14%
0.00235
Низкий

4.1 Medium

CVSS4

Дефекты

CWE-183

Связанные уязвимости

ubuntu
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

CVSS3: 8.8
redhat
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

nvd
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

debian
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2. ...

EPSS

Процентиль: 14%
0.00235
Низкий

4.1 Medium

CVSS4

Дефекты

CWE-183