LDAP Authentication Bypass in OpenVPN Access Server by OpenVPN
CVE-2020-8953
9.8CRITICAL
What is CVE-2020-8953?
OpenVPN Access Server versions prior to 2.8.1 have a vulnerability that allows an attacker to bypass LDAP authentication. This issue arises when a user is not enrolled in two-factor authentication, leaving them susceptible to unauthorized access. It's critical for administrators to upgrade to the latest version to mitigate the risk associated with this vulnerability.