Vulnerability Scanning Solutions, LLC.
Our Process
What We Scan For
Sample Report
Client List
Contact Us
What We Scan For
Family: Misc. --> Category: infos

OpenVPN Unprotected Management Interface Vulnerability Vulnerability Scan

Vulnerability Scan Summary
Looks for banner of OpenVPN Management Interface

Detailed Explanation for this Vulnerability Test

Synopsis :

The remote VPN server can be managed remotely without authentication.

Description :

The remote host is running OpenVPN, an open-source SSL VPN.

The version of OpenVPN installed on the remote host does not require
authentication to access the server's management interface. An
attacker can leverage this issue to gain complete control over the
affected application simply by telneting in.

See also :

Solution :

Disable the management interface or bind it only to a specific
address, such as

Threat Level:

Low / CVSS Base Score : 3.7

Click HERE for more information and discussions on this network vulnerability scan.


P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.