CVE Database
/

CVE-2022-3761

Back to search

CVE-2022-3761

Published: Oct 17, 2023

Modified: Aug 3, 2024

PUBLISHED

Description

OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-middle attackers to intercept configuration profile download requests which contains the users credentials

VendorProductVersions

OpenVPN Inc

OpenVPN Connect

affected
until 3.4.0.4506 - < 3.4.0.4506
affected
until 3.4.0.3100 - < 3.4.0.3100

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now