CVE Database
/

CVE-2024-4877

Back to search

CVE-2024-4877

Published: Apr 3, 2025

Modified: Apr 4, 2025

PUBLISHED

Description

OpenVPN version 2.4.0 through 2.6.10 on Windows allows an external, lesser privileged process to create a named pipe which the OpenVPN GUI component would connect to allowing it to escalate its privileges

VendorProductVersions

OpenVPN

OpenVPN

affected
2.4.0 - <= 2.6.11

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now