PyPI package
openvpn-monitor
pkg:pypi/openvpn-monitor
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-31606 | Hig | 7.5 | <= 1.1.3 | — | Sep 27, 2021 | furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients. | |
| CVE-2021-31605 | Hig | 7.5 | <= 1.1.3 | — | Sep 27, 2021 | furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM. | |
| CVE-2021-31604 | Med | 6.5 | <= 1.1.3 | — | Sep 27, 2021 | furlongm openvpn-monitor through 1.1.3 allows CSRF to disconnect an arbitrary client. |
- affected <= 1.1.3
furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients.
- affected <= 1.1.3
furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM.
- affected <= 1.1.3
furlongm openvpn-monitor through 1.1.3 allows CSRF to disconnect an arbitrary client.