ZeroHour

CVE-2020-15078

CVSS 3.1
7.5 high
EPSS
5%p92
Published
()
Modified
Description

OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.

Vendors
openvpnfedoraprojectcanonicaldebian
Products
openvpn, fedora, ubuntu linux, debian linux
Weakness
CWE-305, CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.