Description
Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.
Remediation
References
Related Vulnerabilities
MODX Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-25911)
WordPress Plugin WHOIS 'domain' Parameter Cross-Site Scripting (1.4.2.2)
WordPress Plugin Export any WordPress data to XML/CSV SQL Injection (1.3.4)
PostgreSQL Incorrect Authorization Vulnerability (CVE-2018-10925)