CVE-2024-8474
OpenVPN Connect before version 3.5.0 can contain the configuration profile's clear-text private key which is logged in the application log, which an unauthorized actor can use to decrypt the VPN traffic
Vendor
Product
CWE
Yayın Tarihi
2025-01-06 15:15:14
Güncelleme
2025-06-10 16:31:24
Source Identifier
security@openvpn.net
KEV Date Added
-