Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
–

111 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)9.8%—Openvpn8/7/202417/6/2026
The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service.
AplazadaMedia (6.3)0.42%—Openvpn Auth LdapAI27/6/202417/6/2026
Buffer overflow in the extract_openvpn_cr function in openvpn-cr.c in openvpn-auth-ldap (aka the Three Rings Auth-LDAP plugin for OpenVPN) 2.0.4 allows attackers with a valid LDAP username and who can control the challenge/response password field to pass a string with more than 14 colons into this field and cause a…
AnalizadaMedia (6.5)0.78%—Openvpn 329/2/202417/6/2026
The PKCS#7 parser in OpenVPN 3 Core Library versions through 3.8.3 did not properly validate the parsed data, which would result in the application crashing.
AnalizadaAlta (8.4)0.21%—Openvpn GUI21/2/202417/6/2026
The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation directory of OpenVPN binaries when using a non-standard installation path, which allows an attacker to replace binaries to run arbitrary executables.
AnalizadaAlta (7.8)0.32%—Openvpn Connect20/2/202417/6/2026
The nodejs framework in OpenVPN Connect 3.0 through 3.4.3 (Windows)/3.4.7 (macOS) was not properly configured, which allows a local user to execute arbitrary code within the nodejs process context via the ELECTRON_RUN_AS_NODE environment variable
ModificadaAlta (7.8)0.24%—Openvpn Connect8/1/202417/6/2026
OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries using the DYLD_INSERT_LIBRARIES environment variable
ModificadaCrítica (9.8)2.0%—OpenvpnOpenvpn Access ServerDebian LinuxFedoraproject Fedora11/11/202323/6/2026
Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.
ModificadaAlta (7.5)1.2%—OpenvpnOpenvpn Access ServerDebian LinuxFedoraproject Fedora11/11/202317/6/2026
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
ModificadaAlta (7.8)0.16%—Securepoint Openvpn-client30/10/202317/6/2026
The installer (aka openvpn-client-installer) in Securepoint SSL VPN Client before 2.0.40 allows local privilege escalation during installation or repair.
ModificadaMedia (5.9)0.84%—Openvpn Connect17/10/202317/6/2026
OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-middle attackers to intercept configuration profile download requests which contains the users credentials
ModificadaAlta (7.5)0.92%—Openvpn22/8/202317/6/2026
Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet.
ModificadaAlta (8.8)1.0%—Perfact Openvpn-client14/10/202217/6/2026
An attacker can take leverage on PerFact OpenVPN-Client versions 1.4.1.0 and prior to send the config command from any application running on the local host machine to force the back-end server into initializing a new open-VPN instance with arbitrary open-VPN configuration. This could result in the attacker achieving…
ModificadaAlta (7.5)0.89%—Openvpn Access Server6/7/202217/6/2026
OpenVPN Access Server 2.10 and prior versions are susceptible to resending multiple packets in a response to a reset packet sent from the client which the client again does not respond to, resulting in a limited amplification attack.
ModificadaAlta (7.5)0.92%—Openvpn Access Server6/7/202217/6/2026
OpenVPN Access Server before 2.11 uses a weak random generator used to create user session token for the web portal
ModificadaAlta (7.5)0.87%—Openvpn Access Server6/7/202217/6/2026
The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a random generated admin password
ModificadaCrítica (9.8)3.6%—OpenvpnFedoraproject FedoraDebian Linux18/3/202217/6/2026
OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials.
ModificadaAlta (7.5)2.5%—Openvpn-monitor Project Openvpn-monitor27/9/202117/6/2026
furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients.
ModificadaAlta (7.5)3.3%—Openvpn-monitor Project Openvpn-monitor27/9/202117/6/2026
furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM.
ModificadaMedia (6.5)0.68%—Openvpn-monitor Project Openvpn-monitor27/9/202117/6/2026
furlongm openvpn-monitor through 1.1.3 allows CSRF to disconnect an arbitrary client.
ModificadaMedia (6.1)0.75%—Openvpn Access Server23/9/202117/6/2026
OpenVPN Access Server 2.9.0 through 2.9.4 allow remote attackers to inject arbitrary web script or HTML via the web login page URL.
ModificadaAlta (7.4)1.2%—Openvpn12/7/202117/6/2026
OpenVPN 3 Core Library version 3.6 and 3.6.1 allows a man-in-the-middle attacker to bypass the certificate authentication by issuing an unrelated server certificate using the same hostname found in the verify-x509-name option in a client configuration.
ModificadaAlta (7.8)0.77%—Openvpn Connect2/7/202117/6/2026
OpenVPN Connect 3.2.0 through 3.3.0 allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (OpenVPNConnect.exe).
ModificadaAlta (7.8)0.34%—Openvpn2/7/202117/6/2026
OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).
ModificadaAlta (7.8)0.73%—Securepoint Openvpn-client28/6/202117/6/2026
Securepoint SSL VPN Client v2 before 2.0.32 on Windows has unsafe configuration handling that enables local privilege escalation to NT AUTHORITY\SYSTEM. A non-privileged local user can modify the OpenVPN configuration stored under "%APPDATA%\Securepoint SSL VPN" and add a external script file that is executed as…
ModificadaAlta (7.5)1.9%—Openvpn Access Server4/6/202117/6/2026
OpenVPN Access Server 2.7.3 to 2.8.7 allows remote attackers to trigger an assert during the user authentication phase via incorrect authentication token data in an early phase of the user authentication resulting in a denial of service.
Orbitaley — Vulnerabilidades