PT-2021-19445 · Furlongm · Openvpn-Monitor

Published

2021-09-27

·

Updated

2023-12-22

·

CVE-2021-31606

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions furlongm openvpn-monitor versions 1.1.3 and earlier
Description The issue allows for Authorization Bypass, enabling the disconnection of arbitrary clients.
Recommendations For furlongm openvpn-monitor versions 1.1.3 and earlier, update to a version later than 1.1.3 to resolve the issue.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2021-31606
GHSA-5W5C-3G26-8MMC
PYSEC-2021-354

Affected Products

Openvpn-Monitor