CVE-2026-82312

LOW CVSS 4.0: 1.8 EPSS 0.10%
Updated Sep 07, 2026
Openvpn
Parameter Value
CVSS 1.8 (LOW)
Type CWE-732 (Incorrect Permission Assignment), CWE-412
Vendor Openvpn
Public PoC No

OpenVPN 2.0.0 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows local authenticated users to cause a denial of service via a NULL DACL on named IPC objects

Attack Parameters

Attack Vector
Local
Requires local access
Attack Complexity
Low
Easy to exploit
Attack Requirements
Present
Additional conditions required
Privileges Required
Low
Basic privileges needed
User Interaction
Passive
Minimal interaction

Impact Assessment

Confidentiality
None
No data leak
Integrity
None
No data modification
Availability
Low
Partial disruption

CVSS Vector v4.0