Back to search
CVE-2013-0294
Published: Jan 28, 2020
Modified: Aug 6, 2024
PUBLISHED
Description
packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes it easier for remote attackers to obtain sensitive information via a brute force attack.
| Vendor | Product | Versions |
|---|---|---|
pyrad | pyrad | affected before 2.1 |
References
https://bugzilla.redhat.com/show_bug.cgi?id=911682
x_refsource_CONFIRM
http://www.securityfocus.com/bid/57984
x_refsource_MISC
http://www.openwall.com/lists/oss-security/2013/02/15/13
x_refsource_MISC
https://exchange.xforce.ibmcloud.com/vulnerabilities/82133
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now