CVE Published: 14/07/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: OpenVPN |
Vendor: n/a |
Product: OpenVPN Access Server Status : PUBLISHED
CVE-2020-15074 Description
OpenVPN Access Server older than version 2.8.4 and version 2.9.5 generates new user authentication tokens instead of reusing exiting tokens on reconnect making it possible to circumvent the initial token expiry timestamp.