CVE-2021-3606

CVE-2021-3606

OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).

Source: CVE-2021-3606

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다