ZeroHour

CVE-2020-15077

CVSS 3.1
5.3 medium
EPSS
1%p67
Published
()
Modified
Description

OpenVPN Access Server 2.8.7 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.

Vendors
openvpn
Products
openvpn access server
Weakness
CWE-305, CWE-287
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.