OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: OpenVPN
Published: 2021-04-26T13:19:45
Updated: 2024-08-04T13:08:21.675Z
Reserved: 2020-06-25T00:00:00
Link: CVE-2020-15078
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-04-26T14:15:08.623
Modified: 2024-11-21T05:04:45.900
Link: CVE-2020-15078
Redhat
No data.