#VU61608 Improper Authentication in OpenVPN for Windows - CVE-2022-0547
Published: March 24, 2022
OpenVPN for Windows
OpenVPN
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to an error when processing authentication requests in external authentication plug-ins when more than one of them makes use of deferred authentication replies. A remote attacker can bypass authentication process and gain unauthorized access to the network with only partially correct credentials.