OpenVPN 2.5.4 Community Edition

CPE Details

OpenVPN 2.5.4 Community Edition
2.5.4
2023-11-27
19h07 +00:00
2023-11-27
19h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:openvpn:openvpn:2.5.4:*:*:*:community:*:*:*

Informations

Vendor

openvpn

Product

openvpn

Version

2.5.4

Software Edition

community

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-27903 2024-07-08 10h27 +00:00 OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.
9.8
Critique
CVE-2024-24974 2024-07-08 10h20 +00:00 The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service.
7.5
Haute
CVE-2024-27459 2024-07-08 10h14 +00:00 The interactive service in OpenVPN 2.6.9 and earlier allows an attacker to send data causing a stack overflow which can be used to execute arbitrary code with more privileges.
7.8
Haute
CVE-2022-0547 2022-03-18 17h00 +00:00 OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials.
9.8
Critique