Описание
OpenVPN Access Server 2.8.x before 2.8.1 allows LDAP authentication bypass (except when a user is enrolled in two-factor authentication).
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 2.8.0 (включая) до 2.8.1 (исключая)
cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 69%
0.01336
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 6 лет назад
OpenVPN Access Server 2.8.x before 2.8.1 allows LDAP authentication bypass (except when a user is enrolled in two-factor authentication).
github
около 4 лет назад
OpenVPN Access Server 2.8.x before 2.8.1 allows LDAP authentication bypass (except when a user is enrolled in two-factor authentication).
EPSS
Процентиль: 69%
0.01336
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-287