Openconnect maintains a focused remote-access product line centered on WebConnect, a narrowly scoped component where the observed vulnerability signal has been limited to general classification categories. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Openconnect over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0465MEDIUM Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted fi | Dec 31, 2004 | 5.0 | 33 | NO | YES |
CVE-2004-0466MEDIUM WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote attackers to cause a denial of service (hang) via a URL containing an MS-DOS device name such as (1) AUX, (2) CON | Feb 21, 2004 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openconnect.
Media articles that mention a CVE ID that affects a product developed by Openconnect — matched by CVE ID, not by vendor name.