OpenVPN Access Server 2.9.0 through 2.9.4 allow remote attackers to inject arbitrary web script or HTML via the web login page URL.
References
Link | Resource |
---|---|
https://openvpn.net/vpn-server-resources/release-notes/#openvpn-access-server-2-9-5 | Release Notes Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: OpenVPN
Published: 2021-09-23T14:53:51
Updated: 2021-09-23T14:53:51
Reserved: 2021-09-22T00:00:00
Link: CVE-2021-3824
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-09-23T15:15:07.973
Modified: 2021-09-29T20:21:27.340
Link: CVE-2021-3824
JSON object: View
Redhat Information
No data.