Page 3 of 13 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 7EXPL: 0

Unspecified vulnerability in FreeRADIUS 1.0.0 up to 1.1.0 allows remote attackers to bypass authentication or cause a denial of service (server crash) via "Insufficient input validation" in the EAP-MSCHAPv2 state machine module. • ftp://patches.sgi.com/support/free/security/advisories/20060404-01-U.asc http://lists.suse.de/archive/suse-security-announce/2006-Mar/0009.html http://rhn.redhat.com/errata/RHSA-2006-0271.html http://secunia.com/advisories/19300 http://secunia.com/advisories/19405 http://secunia.com/advisories/19518 http://secunia.com/advisories/19527 http://secunia.com/advisories/19811 http://secunia.com/advisories/20461 http://securitytracker.com/id?1015795 http://www.debian.org/security •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries. • http://www.derkeiler.com/Mailing-Lists/Full-Disclosure/2005-05/0492.html http://www.freeradius.org/security.html http://www.gentoo.org/security/en/glsa/glsa-200505-13.xml http://www.novell.com/linux/security/advisories/2005_14_sr.html http://www.redhat.com/support/errata/RHSA-2005-524.html http://www.securityfocus.com/bid/13540 http://www.securitytracker.com/alerts/2005/May/1013909.html https://exchange.xforce.ibmcloud.com/vulnerabilities/20449 https://oval.cisecurity.org/repo •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in the sql_escape_func function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote attackers to cause a denial of service (crash). • http://www.derkeiler.com/Mailing-Lists/Full-Disclosure/2005-05/0492.html http://www.freeradius.org/security.html http://www.gentoo.org/security/en/glsa/glsa-200505-13.xml http://www.novell.com/linux/security/advisories/2005_14_sr.html http://www.redhat.com/support/errata/RHSA-2005-524.html http://www.securityfocus.com/bid/13541 http://www.securitytracker.com/alerts/2005/May/1013909.html https://exchange.xforce.ibmcloud.com/vulnerabilities/20450 https://oval.cisecurity.org/repo •