CVE-2022-33737

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
06/07/2022
Last modified:
21/07/2023

Description

The OpenVPN Access Server installer creates a log file readable for everyone, which from version 2.10.0 and before 2.11.0 may contain a random generated admin password

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openvpn:openvpn_access_server:*:*:*:*:*:*:*:* 2.10.0 (including) 2.11.0 (excluding)


References to Advisories, Solutions, and Tools