Description
OpenVPN Access Server 2.9.0 through 2.9.4 allow remote attackers to inject arbitrary web script or HTML via the web login page URL.
Remediation
References
Related Vulnerabilities
WordPress Plugin Numbers generator and validator Multiple Unspecified Vulnerabilities (1.02)
concrete5 CVE-2020-14961 Vulnerability (CVE-2020-14961)
TYPO3 URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2010-3669)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-3394)