Security Advisory

CVE-2020-15074

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-14 17:27:31
Last updated 2024-08-04 13:08:21
Assigner OpenVPN
State PUBLISHED

Description

OpenVPN Access Server older than version 2.8.4 and version 2.9.5 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.