Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
111 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 9.8% | — | Openvpn | 8/7/2024 | 17/6/2026 | The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service. | |
| Aplazada | Media (6.3) | 0.42% | — | Openvpn Auth LdapAI | 27/6/2024 | 17/6/2026 | Buffer overflow in the extract_openvpn_cr function in openvpn-cr.c in openvpn-auth-ldap (aka the Three Rings Auth-LDAP plugin for OpenVPN) 2.0.4 allows attackers with a valid LDAP username and who can control the challenge/response password field to pass a string with more than 14 colons into this field and cause a… | |
| Analizada | Media (6.5) | 0.78% | — | Openvpn 3 | 29/2/2024 | 17/6/2026 | The PKCS#7 parser in OpenVPN 3 Core Library versions through 3.8.3 did not properly validate the parsed data, which would result in the application crashing. | |
| Analizada | Alta (8.4) | 0.21% | — | Openvpn GUI | 21/2/2024 | 17/6/2026 | The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation directory of OpenVPN binaries when using a non-standard installation path, which allows an attacker to replace binaries to run arbitrary executables. | |
| Analizada | Alta (7.8) | 0.32% | — | Openvpn Connect | 20/2/2024 | 17/6/2026 | The nodejs framework in OpenVPN Connect 3.0 through 3.4.3 (Windows)/3.4.7 (macOS) was not properly configured, which allows a local user to execute arbitrary code within the nodejs process context via the ELECTRON_RUN_AS_NODE environment variable | |
| Modificada | Alta (7.8) | 0.24% | — | Openvpn Connect | 8/1/2024 | 17/6/2026 | OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries using the DYLD_INSERT_LIBRARIES environment variable | |
| Modificada | Crítica (9.8) | 2.0% | — | OpenvpnOpenvpn Access ServerDebian LinuxFedoraproject Fedora | 11/11/2023 | 23/6/2026 | Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer. | |
| Modificada | Alta (7.5) | 1.2% | — | OpenvpnOpenvpn Access ServerDebian LinuxFedoraproject Fedora | 11/11/2023 | 17/6/2026 | Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service. | |
| Modificada | Alta (7.8) | 0.16% | — | Securepoint Openvpn-client | 30/10/2023 | 17/6/2026 | The installer (aka openvpn-client-installer) in Securepoint SSL VPN Client before 2.0.40 allows local privilege escalation during installation or repair. | |
| Modificada | Media (5.9) | 0.84% | — | Openvpn Connect | 17/10/2023 | 17/6/2026 | OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-middle attackers to intercept configuration profile download requests which contains the users credentials | |
| Modificada | Alta (7.5) | 0.92% | — | Openvpn | 22/8/2023 | 17/6/2026 | Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet. | |
| Modificada | Alta (8.8) | 1.0% | — | Perfact Openvpn-client | 14/10/2022 | 17/6/2026 | An attacker can take leverage on PerFact OpenVPN-Client versions 1.4.1.0 and prior to send the config command from any application running on the local host machine to force the back-end server into initializing a new open-VPN instance with arbitrary open-VPN configuration. This could result in the attacker achieving… | |
| Modificada | Alta (7.5) | 0.89% | — | Openvpn Access Server | 6/7/2022 | 17/6/2026 | OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack. | |
| Modificada | Alta (7.5) | 0.92% | — | Openvpn Access Server | 6/7/2022 | 17/6/2026 | OpenVPN Access Server before 2.11 uses a weak random generator used to create user session token for the web portal | |
| Modificada | Alta (7.5) | 0.87% | — | Openvpn Access Server | 6/7/2022 | 17/6/2026 | The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a random generated admin password | |
| Modificada | Crítica (9.8) | 3.6% | — | OpenvpnFedoraproject FedoraDebian Linux | 18/3/2022 | 17/6/2026 | OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials. | |
| Modificada | Alta (7.5) | 2.5% | — | Openvpn-monitor Project Openvpn-monitor | 27/9/2021 | 17/6/2026 | furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients. | |
| Modificada | Alta (7.5) | 3.3% | — | Openvpn-monitor Project Openvpn-monitor | 27/9/2021 | 17/6/2026 | furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM. | |
| Modificada | Media (6.5) | 0.68% | — | Openvpn-monitor Project Openvpn-monitor | 27/9/2021 | 17/6/2026 | furlongm openvpn-monitor through 1.1.3 allows CSRF to disconnect an arbitrary client. | |
| Modificada | Media (6.1) | 0.75% | — | Openvpn Access Server | 23/9/2021 | 17/6/2026 | OpenVPN Access Server 2.9.0 through 2.9.4 allow remote attackers to inject arbitrary web script or HTML via the web login page URL. | |
| Modificada | Alta (7.4) | 1.2% | — | Openvpn | 12/7/2021 | 17/6/2026 | OpenVPN 3 Core Library version 3.6 and 3.6.1 allows a man-in-the-middle attacker to bypass the certificate authentication by issuing an unrelated server certificate using the same hostname found in the verify-x509-name option in a client configuration. | |
| Modificada | Alta (7.8) | 0.77% | — | Openvpn Connect | 2/7/2021 | 17/6/2026 | OpenVPN Connect 3.2.0 through 3.3.0 allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (OpenVPNConnect.exe). | |
| Modificada | Alta (7.8) | 0.34% | — | Openvpn | 2/7/2021 | 17/6/2026 | OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe). | |
| Modificada | Alta (7.8) | 0.73% | — | Securepoint Openvpn-client | 28/6/2021 | 17/6/2026 | Securepoint SSL VPN Client v2 before 2.0.32 on Windows has unsafe configuration handling that enables local privilege escalation to NT AUTHORITY\SYSTEM. A non-privileged local user can modify the OpenVPN configuration stored under "%APPDATA%\Securepoint SSL VPN" and add a external script file that is executed as… | |
| Modificada | Alta (7.5) | 1.9% | — | Openvpn Access Server | 4/6/2021 | 17/6/2026 | OpenVPN Access Server 2.7.3 to 2.8.7 allows remote attackers to trigger an assert during the user authentication phase via incorrect authentication token data in an early phase of the user authentication resulting in a denial of service. |