CVE-2021-31605
Published
CVSS v3
7.5
HIGH
CVSS v2
7.8
HIGH
Affected
1
PROJECT
Description
furlongm openvpn-monitor through 1.1.3 allows %0a command injection via the OpenVPN management interface socket. This can shut down the server via signal%20SIGTERM.
openvpn-monitor is a web based OpenVPN monitor, that shows current connection information, such as users, location and data transferred.