CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.
CVE
CVE-2022-0547
Severity
CRITICAL
CVSS
9.8
EPSS
3.52%
Original NVD Description
OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials.
Related CVEs
Other vulnerabilities affecting the same vendor(s)