Amplification Attack Vulnerability in OpenVPN Access Server
CVE-2021-4234
7.5HIGH
What is CVE-2021-4234?
OpenVPN Access Server versions up to 2.10 are vulnerable to an amplification attack. The vulnerability arises when a client sends a reset packet, prompting the server to resend multiple packets in response. If the client does not react to these responses, it can lead to a situation where an attacker exploits this behavior to amplify traffic, potentially overwhelming the network.
Affected Version(s)
OpenVPN Access Server 2.10 and prior version