OpenVPN Access Server 2.10.2

CPE Details

OpenVPN Access Server 2.10.2
2.10.2
2022-07-12
11h38 +00:00
2022-07-12
11h40 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openvpn:openvpn_access_server:2.10.2:*:*:*:*:*:*:*

Informations

Vendor

openvpn

Product

openvpn_access_server

Version

2.10.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-4234 2022-07-06 17h10 +00:00 OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack.
7.5
High
CVE-2022-33738 2022-07-06 13h10 +00:00 OpenVPN Access Server before 2.11 uses a weak random generator used to create user session token for the web portal
7.5
High
CVE-2022-33737 2022-07-06 13h09 +00:00 The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a random generated admin password
7.5
High