Vulnerabilities
Vulnerable Software
Pyrad Project:  >> Pyrad  >> 0.9  Security Vulnerabilities
packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes it easier for remote attackers to obtain sensitive information via a brute force attack.
CVSS Score
5.9
EPSS Score
0.019
Published
2020-01-28
The CreateID function in packet.py in pyrad before 2.1 uses sequential packet IDs, which makes it easier for remote attackers to spoof packets by predicting the next ID, a different vulnerability than CVE-2013-0294.
CVSS Score
4.3
EPSS Score
0.013
Published
2019-12-09


Contact Us

Shodan ® - All rights reserved