Lucene search

K
osvGoogleOSV:CVE-2021-3606
HistoryJul 02, 2021 - 1:15 p.m.

CVE-2021-3606

2021-07-0213:15:07
Google
osv.dev
2
openvpn
windows
openssl
vulnerability
dll loading
arbitrary code

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

29.4%

OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

29.4%

Related for OSV:CVE-2021-3606