OpenVPN Access Server before 2.11 uses a weak random generator used to create user session token for the web portal
References
| Link | Resource |
|---|---|
| https://openvpn.net/vpn-server-resources/release-notes/#openvpn-access-server-2-11-0 | Release Notes Vendor Advisory |
| https://openvpn.net/vpn-server-resources/release-notes/#openvpn-access-server-2-11-0 | Release Notes Vendor Advisory |
Configurations
History
21 Nov 2024, 07:08
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://openvpn.net/vpn-server-resources/release-notes/#openvpn-access-server-2-11-0 - Release Notes, Vendor Advisory |
Information
Published : 2022-07-06 16:15
Updated : 2024-11-21 07:08
NVD link : CVE-2022-33738
Mitre link : CVE-2022-33738
CVE.ORG link : CVE-2022-33738
JSON object : View
Products Affected
openvpn
- openvpn_access_server
