High severity7.5NVD Advisory· Published Jul 6, 2022· Updated Jun 17, 2026
CVE-2022-33737
CVE-2022-33737
Description
The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a random generated admin password
Affected products
3cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:*range: >=2.10.0,<2.11.0
- (no CPE)
- (no CPE)range: <=2.11.0, >=2.10.0
Patches
Vulnerability mechanics
References
1- openvpn.net/vpn-server-resources/release-notes/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.