Vulnerabilities (CVE)

Filtered by vendor Pyrad Project Subscribe
Filtered by product Pyrad
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-0342 1 Pyrad Project 1 Pyrad 2024-02-04 4.3 MEDIUM 4.3 MEDIUM
The CreateID function in packet.py in pyrad before 2.1 uses sequential packet IDs, which makes it easier for remote attackers to spoof packets by predicting the next ID, a different vulnerability than CVE-2013-0294.
CVE-2013-0294 2 Fedoraproject, Pyrad Project 2 Fedora, Pyrad 2024-02-04 4.3 MEDIUM 5.9 MEDIUM
packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes it easier for remote attackers to obtain sensitive information via a brute force attack.