CVE-2021-3606

HIGH

Openvpn < 2.5.3 - Uncontrolled Search Path

Title source: rule

Description

OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 14.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

openvpn/openvpn < 2.5.3

Timeline

Published Jul 02, 2021
Tracked Since Feb 18, 2026