CVE-2023-46849, -46850: DoS and use-after-free in OpenVPN Access Server ❗️
If the --fragment parameter is present in the target device's configuration, an attacker can crash the software by dividing by zero and also gain access to sensitive information.
Search at Netlas.io:
👉🏻 Link: https://nt.ls/GpBD3
👉🏻 Dork: http.headers.server:"OpenVPN-AS"
Vendor's advisory: https://openvpn.net/security-advisory/access-server-security-update-cve-2023-46849-cve-2023-46850/
Post #118
770

- 👾 4
- ❤ 1
- 👍 1
- 🔥 1