CVE-2021-31605

Published
View on NVD ↗
CVSS v3
7.5
HIGH
CVSS v2
7.8
HIGH
Affected
1
PROJECT

Description

furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM.

openvpn-monitor is a web based OpenVPN monitor, that shows current connection information, such as users, location and data transferred.
GitHubGitHub
1.06K