Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-45079

In strongSwan before 5.9.5, a malicious responder can send an EAP-Success message too early without actually authenticating the client and (in the case of EAP methods with mutual authentication and EAP-only authentication for IKEv2) even without server authentication.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.0%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 5.8
Products affected by CVE-2021-45079


Contact Us

Shodan ® - All rights reserved