National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

CVE-2006-2229 Detail

Current Description

OpenVPN 2.0.7 and earlier, when configured to use the --management option with an IP that is not 127.0.0.1, uses a cleartext password for TCP sessions to the management interface, which might allow remote attackers to view sensitive information or cause a denial of service.

Source:  MITRE
View Analysis Description

Severity



CVSS 3.x Severity and Metrics:

NIST CVSS score
NIST: NVD
Base Score: N/A
NVD score not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource
http://openvpn.net/man.html
http://www.securityfocus.com/archive/1/432863/100/0/threaded
http://www.securityfocus.com/archive/1/432867/100/0/threaded
http://www.securityfocus.com/archive/1/433000/100/0/threaded

Weakness Enumeration

CWE-ID CWE Name Source
NVD-CWE-Other Other NIST  

Known Affected Software Configurations Switch to CPE 2.3

Configuration 1 ( hide )
 cpe:/a:openvpn:openvpn:2.0
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc2
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc3
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc4
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc5
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc6
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.1_rc7
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.2
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.2_rc1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.3_rc1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.4
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.5
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.6
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.6_rc1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0.7
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta2
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta3
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta4
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta5
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta6
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta7
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta8
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta9
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta10
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta11
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta12
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta13
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta15
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta16
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta17
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta18
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta19
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta20
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_beta28
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc2
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc3
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc4
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc5
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc6
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc7
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc8
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc9
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc10
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc11
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc12
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc13
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc14
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc15
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc16
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc17
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc18
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc19
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc20
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_rc21
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test1
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test2
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test3
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test4
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test5
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test6
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test7
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test8
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test9
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test10
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test11
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test12
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test14
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test15
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test16
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test17
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test18
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test19
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test20
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test21
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test22
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test23
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test24
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test25
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test26
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test27
     Show Matching CPE(s)
 cpe:/a:openvpn:openvpn:2.0_test29
     Show Matching CPE(s)


Change History

2 change records found - show changes

Quick Info

CVE Dictionary Entry:
CVE-2006-2229
NVD Published Date:
05/05/2006
NVD Last Modified:
10/18/2018