Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-63649

Опубликовано: 14 авг. 2026
Источник: nvd
EPSS Низкий

Описание

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

EPSS

Процентиль: 14%
0.00235
Низкий

Дефекты

CWE-183

Связанные уязвимости

ubuntu
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

CVSS3: 8.8
redhat
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

debian
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2. ...

github
20 дней назад

The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks

EPSS

Процентиль: 14%
0.00235
Низкий

Дефекты

CWE-183