Beveiligingsadvies

CVE-2024-8474

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-01-06 14:33:26
Laatst bijgewerkt 2025-01-06 16:54:38
Toegewezen door OpenVPN
CVSS-score 7.5
Status PUBLISHED

Beschrijving

OpenVPN Connect before version 3.5.0 can contain the configuration profile's clear-text private key which is logged in the application log, which an unauthorized actor can use to decrypt the VPN traffic