ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅
An argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows remote authenticated users to execute arbitrary commands via a crafted certificate subject
A flaw was found in OpenVPN on Windows. An argument parsing issue allows remote authenticated users to execute arbitrary commands by providing a specially crafted certificate subject. This vulnerability could lead to a complete compromise of the affected system.
ΠΡΡΠ΅Ρ
Important: This vulnerability in OpenVPN allows remote authenticated users to execute arbitrary commands through a crafted certificate subject. However, this flaw specifically impacts OpenVPN installations on Windows platforms and does not affect OpenVPN packages provided within Red Hat's Linux-based distributions.
ΠΠΎΠΏΠΎΠ»Π½ΠΈΡΠ΅Π»ΡΠ½Π°Ρ ΠΈΠ½ΡΠΎΡΠΌΠ°ΡΠΈΡ
Π‘ΡΠ°ΡΡΡ:
EPSS
8.8 High
CVSS3
Π‘Π²ΡΠ·Π°Π½Π½ΡΠ΅ ΡΡΠ·Π²ΠΈΠΌΠΎΡΡΠΈ
An argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows remote authenticated users to execute arbitrary commands via a crafted certificate subject
An argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows remote authenticated users to execute arbitrary commands via a crafted certificate subject
An argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_a ...
An argument parsing issue in OpenVPN 2.1_rc10 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows remote authenticated users to execute arbitrary commands via a crafted certificate subject
EPSS
8.8 High
CVSS3