CVE Database
/

CVE-2022-0547

Back to search

CVE-2022-0547

Published: Mar 18, 2022

Modified: Nov 3, 2025

PUBLISHED

Description

OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials.

VendorProductVersions

n/a

OpenVPN

affected
version 2.1 until version 2.4.12 and 2.5.6.

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now