Логотип exploitDog
product: "openvpn"
Консоль
Логотип exploitDog

exploitDog

product: "openvpn"
OpenVPN

OpenVPNсвободная реализация технологии виртуальной частной сети (VPN) с открытым исходным кодом для создания зашифрованных каналoв типа точка-точка или сервер-клиенты между компьютерами.

Релизный цикл, информация об уязвимостях

Продукт: OpenVPN
Вендор: openvpn

График релизов

2.12.22.32.42.52.62009201020112012201320142015201620172018201920202021202220232024202520262027

Недавние уязвимости OpenVPN

Количество 203

nvd логотип

CVE-2006-2229

больше 19 лет назад

OpenVPN 2.0.7 and earlier, when configured to use the --management option with an IP that is not 127.0.0.1, uses a cleartext password for TCP sessions to the management interface, which might allow remote attackers to view sensitive information or cause a denial of service.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2006-2229

больше 19 лет назад

OpenVPN 2.0.7 and earlier, when configured to use the --management opt ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2006-1629

почти 20 лет назад

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.

CVSS2: 9
EPSS: Низкий
debian логотип

CVE-2006-1629

почти 20 лет назад

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute a ...

CVSS2: 9
EPSS: Низкий
ubuntu логотип

CVE-2006-1629

почти 20 лет назад

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.

CVSS2: 9
EPSS: Низкий
nvd логотип

CVE-2005-3409

больше 20 лет назад

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2005-3409

больше 20 лет назад

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote atta ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3409

больше 20 лет назад

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-3393

больше 20 лет назад

Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-3393

больше 20 лет назад

Format string vulnerability in the foreign_option function in options. ...

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2006-2229

OpenVPN 2.0.7 and earlier, when configured to use the --management option with an IP that is not 127.0.0.1, uses a cleartext password for TCP sessions to the management interface, which might allow remote attackers to view sensitive information or cause a denial of service.

CVSS2: 4
1%
Низкий
больше 19 лет назад
debian логотип
CVE-2006-2229

OpenVPN 2.0.7 and earlier, when configured to use the --management opt ...

CVSS2: 4
1%
Низкий
больше 19 лет назад
nvd логотип
CVE-2006-1629

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.

CVSS2: 9
4%
Низкий
почти 20 лет назад
debian логотип
CVE-2006-1629

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute a ...

CVSS2: 9
4%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2006-1629

OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.

CVSS2: 9
4%
Низкий
почти 20 лет назад
nvd логотип
CVE-2005-3409

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.

CVSS2: 5
3%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-3409

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote atta ...

CVSS2: 5
3%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-3409

OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.

CVSS2: 5
3%
Низкий
больше 20 лет назад
nvd логотип
CVE-2005-3393

Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.

CVSS2: 7.5
2%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-3393

Format string vulnerability in the foreign_option function in options. ...

CVSS2: 7.5
2%
Низкий
больше 20 лет назад

Уязвимостей на страницу


Поделиться