CVE-2025-13086
- EPSS 0.63%
- Veröffentlicht 03.12.2025 19:54:10
- Zuletzt bearbeitet 25.09.2026 23:10:00
Improper validation of source IP addresses in OpenVPN version 2.6.0 through 2.6.15 and 2.7_alpha1 through 2.7_rc1 allows an attacker to open a session from a different IP address which did not initiate the connection resulting in a denial of service ...
CVE-2025-13751
- EPSS 0.17%
- Veröffentlicht 03.12.2025 16:22:35
- Zuletzt bearbeitet 30.01.2026 18:43:57
Interactive service agent in OpenVPN version 2.5.0 through 2.6.16 and 2.7_alpha1 through 2.7_rc2 on Windows allows a local authenticated user to connect to the service and trigger an error causing a local denial of service.
CVE-2025-12106
- EPSS 0.54%
- Veröffentlicht 01.12.2025 12:43:02
- Zuletzt bearbeitet 26.09.2026 00:10:00
Insufficient argument validation in OpenVPN 2.7_alpha1 through 2.7_rc1 allows an attacker to trigger a heap buffer over-read when parsing IP addresses
CVE-2025-10680
- EPSS 7.09%
- Veröffentlicht 24.10.2025 10:15:34
- Zuletzt bearbeitet 15.04.2026 00:35:42
OpenVPN 2.7_alpha1 through 2.7_beta1 on POSIX based platforms allows a remote authenticated server to inject shell commands via DNS variables when --dns-updown is in use
CVE-2024-4877
- EPSS 0.42%
- Veröffentlicht 03.04.2025 16:15:32
- Zuletzt bearbeitet 29.04.2025 19:45:07
OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe which the OpenVPN GUI component would connect to allowing it to escalate its privileges
CVE-2025-2704
- EPSS 0.82%
- Veröffentlicht 02.04.2025 21:15:32
- Zuletzt bearbeitet 23.10.2025 11:15:31
OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to trigger a denial of service by corrupting and replaying network packets in the early handshake phase
CVE-2024-5594
- EPSS 0.84%
- Veröffentlicht 06.01.2025 14:15:08
- Zuletzt bearbeitet 03.11.2025 21:18:47
OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to inject unexpected arbitrary data ending up in client logs.
CVE-2024-28882
- EPSS 0.67%
- Veröffentlicht 08.07.2024 22:15:02
- Zuletzt bearbeitet 10.06.2025 16:26:09
OpenVPN from 2.6.0 through 2.6.10 in a server role accepts multiple exit notifications from authenticated clients which will extend the validity of a closing session
CVE-2024-24974
- EPSS 9.76%
- Veröffentlicht 08.07.2024 11:15:10
- Zuletzt bearbeitet 21.11.2024 09:00:04
The interactive service in OpenVPN 2.6.9 and earlier allows the OpenVPN service pipe to be accessed remotely, which allows a remote attacker to interact with the privileged OpenVPN interactive service.
CVE-2024-27903
- EPSS 8.92%
- Veröffentlicht 08.07.2024 11:15:10
- Zuletzt bearbeitet 21.11.2024 09:05:23
OpenVPN plug-ins on Windows with OpenVPN 2.6.9 and earlier could be loaded from any directory, which allows an attacker to load an arbitrary plug-in which can be used to interact with the privileged OpenVPN interactive service.