Vulnerabilities (CVE)

Filtered by vendor Openvpn-monitor Project Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-31604 1 Openvpn-monitor Project 1 Openvpn-monitor 2024-02-28 4.3 MEDIUM 6.5 MEDIUM
furlongm openvpn-monitor through 1.1.3 allows CSRF to disconnect an arbitrary client.
CVE-2021-31606 1 Openvpn-monitor Project 1 Openvpn-monitor 2024-02-28 5.0 MEDIUM 7.5 HIGH
furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients.
CVE-2021-31605 1 Openvpn-monitor Project 1 Openvpn-monitor 2024-02-28 7.8 HIGH 7.5 HIGH
furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM.