CVE-2024-5594 – OpenVPN PATH Injection Vulnerability

CVE ID : CVE-2024-5594

Published : Jan. 6, 2025, 2:15 p.m. | 6 hours, 45 minutes ago

Description : OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which attackers can use to inject unexpected arbitrary data into third-party executables or plug-ins.

Severity: 9.1 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Go to Source