Page 4 of 40 results (0.003 seconds)

CVSS: 9.8EPSS: 29%CPEs: 40EXPL: 0

04 Mar 2002 — Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data. • http://archives.neohapsis.com/archives/linux/suse/2002-q2/0362.html •

CVSS: 7.5EPSS: 10%CPEs: 40EXPL: 0

04 Mar 2002 — Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2. • ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:02.asc •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

27 Jul 2001 — Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine the WEP key and decrypt RG-1000 traffic. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0020.html •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

27 Jul 2001 — The Lucent Closed Network protocol can allow remote attackers to join Closed Network networks which they do not have access to. The 'Network Name' or SSID, which is used as a shared secret to join the network, is transmitted in the clear. • http://archives.neohapsis.com/archives/bugtraq/2001-04/0015.html •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 0

21 Jul 2001 — Multiple buffer overflows in RADIUS daemon radiusd in (1) Merit 3.6b and (2) Lucent 2.1-2 RADIUS allow remote attackers to cause a denial of service or execute arbitrary commands. • http://www.kb.cert.org/vuls/id/898931 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

13 Jul 2001 — Directory traversal vulnerability in Livingston/Lucent RADIUS before 2.1.va.1 may allow attackers to read arbitrary files via a .. (dot dot) attack. • http://freshmeat.net/releases/52020 •

CVSS: 8.4EPSS: 2%CPEs: 2EXPL: 0

06 Jul 2001 — Format string vulnerabilities in Livingston/Lucent RADIUS before 2.1.va.1 may allow local or remote attackers to cause a denial of service and possibly execute arbitrary code via format specifiers that are injected into log messages. • http://archives.neohapsis.com/archives/apps/freshmeat/2001-07/0009.html •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1

01 Jan 2001 — Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages. • http://www.cs.jhu.edu/~seny/pubs/wince802.pdf •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

01 Mar 1999 — Denial of service of Ascend routers through port 150 (remote administration). • https://www.cve.org/CVERecord?id=CVE-1999-0221 •

CVSS: 7.5EPSS: 5%CPEs: 13EXPL: 2

16 Mar 1998 — Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port, which is used by the Java Configurator tool. • https://www.exploit-db.com/exploits/19555 •