Impact
The vulnerability arises from an implementation flaw in OpenVPN for Windows that permits a local authenticated user to perform a binary planting attack during the network configuration process. This flaw allows the attacker to place a malicious executable in a location where OpenVPN will later invoke it, resulting in code execution with the privileges of the OpenVPN process. The identified weakness is classified as CWE‑426, indicating an untrusted search path.
Affected Systems
Affected across Windows deployments are OpenVPN releases 2.5.0 through 2.6.22 and the 2.7_alpha1 through 2.7.6 branches. Users running any of these versions on Windows must assess whether they are exposed.
Risk and Exploitability
The CVSS score of 8.5 signals a high severity impact, and the vulnerability is not listed in the CISA KEV catalog. EPSS data is unavailable, so the current probability of exploitation is unknown, but the local nature of the attack coupled with the ability to plant binaries suggests that a capable user with local administrative or configuration privileges could exploit the flaw with relative ease. The attack vector is local; it requires the attacker to authenticate to the host and modify network configuration or related directories, after which the malicious binary will be executed.
OpenCVE Enrichment