Lucene search

K
cveMitreCVE-2006-2229
HistoryMay 05, 2006 - 7:02 p.m.

CVE-2006-2229

2006-05-0519:02:00
mitre
web.nvd.nist.gov
27
openvpn
2.0.7
cve-2006-2229
cleartext password
vulnerability
ip configuration
management interface
denial of service

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.016

Percentile

87.4%

OpenVPN 2.0.7 and earlier, when configured to use the --management option with an IP that is not 127.0.0.1, uses a cleartext password for TCP sessions to the management interface, which might allow remote attackers to view sensitive information or cause a denial of service.

Affected configurations

Nvd
Node
openvpnopenvpnMatch2.0
OR
openvpnopenvpnMatch2.0.1_rc1
OR
openvpnopenvpnMatch2.0.1_rc2
OR
openvpnopenvpnMatch2.0.1_rc3
OR
openvpnopenvpnMatch2.0.1_rc4
OR
openvpnopenvpnMatch2.0.1_rc5
OR
openvpnopenvpnMatch2.0.1_rc6
OR
openvpnopenvpnMatch2.0.1_rc7
OR
openvpnopenvpnMatch2.0.2_rc1
OR
openvpnopenvpnMatch2.0.3_rc1
OR
openvpnopenvpnMatch2.0.4
OR
openvpnopenvpnMatch2.0.6_rc1
OR
openvpnopenvpnMatch2.0_beta1
OR
openvpnopenvpnMatch2.0_beta2
OR
openvpnopenvpnMatch2.0_beta3
OR
openvpnopenvpnMatch2.0_beta4
OR
openvpnopenvpnMatch2.0_beta5
OR
openvpnopenvpnMatch2.0_beta6
OR
openvpnopenvpnMatch2.0_beta7
OR
openvpnopenvpnMatch2.0_beta8
OR
openvpnopenvpnMatch2.0_beta9
OR
openvpnopenvpnMatch2.0_beta10
OR
openvpnopenvpnMatch2.0_beta11
OR
openvpnopenvpnMatch2.0_beta12
OR
openvpnopenvpnMatch2.0_beta13
OR
openvpnopenvpnMatch2.0_beta15
OR
openvpnopenvpnMatch2.0_beta16
OR
openvpnopenvpnMatch2.0_beta17
OR
openvpnopenvpnMatch2.0_beta18
OR
openvpnopenvpnMatch2.0_beta19
OR
openvpnopenvpnMatch2.0_beta20
OR
openvpnopenvpnMatch2.0_beta28
OR
openvpnopenvpnMatch2.0_rc1
OR
openvpnopenvpnMatch2.0_rc2
OR
openvpnopenvpnMatch2.0_rc3
OR
openvpnopenvpnMatch2.0_rc4
OR
openvpnopenvpnMatch2.0_rc5
OR
openvpnopenvpnMatch2.0_rc6
OR
openvpnopenvpnMatch2.0_rc7
OR
openvpnopenvpnMatch2.0_rc8
OR
openvpnopenvpnMatch2.0_rc9
OR
openvpnopenvpnMatch2.0_rc10
OR
openvpnopenvpnMatch2.0_rc11
OR
openvpnopenvpnMatch2.0_rc12
OR
openvpnopenvpnMatch2.0_rc13
OR
openvpnopenvpnMatch2.0_rc14
OR
openvpnopenvpnMatch2.0_rc15
OR
openvpnopenvpnMatch2.0_rc16
OR
openvpnopenvpnMatch2.0_rc17
OR
openvpnopenvpnMatch2.0_rc18
OR
openvpnopenvpnMatch2.0_rc19
OR
openvpnopenvpnMatch2.0_rc20
OR
openvpnopenvpnMatch2.0_rc21
OR
openvpnopenvpnMatch2.0_test1
OR
openvpnopenvpnMatch2.0_test2
OR
openvpnopenvpnMatch2.0_test3
OR
openvpnopenvpnMatch2.0_test4
OR
openvpnopenvpnMatch2.0_test5
OR
openvpnopenvpnMatch2.0_test6
OR
openvpnopenvpnMatch2.0_test7
OR
openvpnopenvpnMatch2.0_test8
OR
openvpnopenvpnMatch2.0_test9
OR
openvpnopenvpnMatch2.0_test10
OR
openvpnopenvpnMatch2.0_test11
OR
openvpnopenvpnMatch2.0_test12
OR
openvpnopenvpnMatch2.0_test14
OR
openvpnopenvpnMatch2.0_test15
OR
openvpnopenvpnMatch2.0_test16
OR
openvpnopenvpnMatch2.0_test17
OR
openvpnopenvpnMatch2.0_test18
OR
openvpnopenvpnMatch2.0_test19
OR
openvpnopenvpnMatch2.0_test20
OR
openvpnopenvpnMatch2.0_test21
OR
openvpnopenvpnMatch2.0_test22
OR
openvpnopenvpnMatch2.0_test23
OR
openvpnopenvpnMatch2.0_test24
OR
openvpnopenvpnMatch2.0_test25
OR
openvpnopenvpnMatch2.0_test26
OR
openvpnopenvpnMatch2.0_test27
OR
openvpnopenvpnMatch2.0_test29
OR
openvpnopenvpn_access_serverMatch2.0.1
OR
openvpnopenvpn_access_serverMatch2.0.2
OR
openvpnopenvpn_access_serverMatch2.0.5
OR
openvpnopenvpn_access_serverMatch2.0.6
OR
openvpnopenvpn_access_serverMatch2.0.7
VendorProductVersionCPE
openvpnopenvpn2.0cpe:2.3:a:openvpn:openvpn:2.0:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc1cpe:2.3:a:openvpn:openvpn:2.0.1_rc1:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc2cpe:2.3:a:openvpn:openvpn:2.0.1_rc2:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc3cpe:2.3:a:openvpn:openvpn:2.0.1_rc3:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc4cpe:2.3:a:openvpn:openvpn:2.0.1_rc4:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc5cpe:2.3:a:openvpn:openvpn:2.0.1_rc5:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc6cpe:2.3:a:openvpn:openvpn:2.0.1_rc6:*:*:*:*:*:*:*
openvpnopenvpn2.0.1_rc7cpe:2.3:a:openvpn:openvpn:2.0.1_rc7:*:*:*:*:*:*:*
openvpnopenvpn2.0.2_rc1cpe:2.3:a:openvpn:openvpn:2.0.2_rc1:*:*:*:*:*:*:*
openvpnopenvpn2.0.3_rc1cpe:2.3:a:openvpn:openvpn:2.0.3_rc1:*:*:*:*:*:*:*
Rows per page:
1-10 of 851

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.016

Percentile

87.4%

Related for CVE-2006-2229