Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2783▼ 434 respecto a la semana anterior
Críticas / altas1335▼ 118 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

175 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.3%—Freeradius31/12/200516/6/2026
SQL injection vulnerability in the rlm_sqlcounter module in FreeRADIUS 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.
ModificadaAlta (7.8)2.4%—Freeradius31/12/200516/6/2026
Multiple buffer overflows in FreeRADIUS 1.0.3 and 1.0.4 allow remote attackers to cause denial of service (crash) via (1) the rlm_sqlcounter module or (2) unknown vectors "while expanding %t".
ModificadaMedia (6.4)4.5%—Freeradius31/12/200516/6/2026
Off-by-one error in the sql_error function in sql_unixodbc.c in FreeRADIUS 1.0.2.5-5, and possibly other versions including 1.0.4, might allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing the external database query to fail. NOTE: this single issue is part of a…
ModificadaAlta (7.5)1.8%—Freeradius19/5/200516/6/2026
SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries.
ModificadaAlta (7.5)2.5%—Freeradius19/5/200516/6/2026
Buffer overflow in the sql_escape_func function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote attackers to cause a denial of service (crash).
ModificadaMedia (5)3.3%—FreeradiusRedhat Enterprise LinuxRedhat Fedora Core9/2/200516/6/2026
Memory leak in FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (memory exhaustion) via a series of Access-Request packets with (1) Ascend-Send-Secret, (2) Ascend-Recv-Secret, or (3) Tunnel-Password attributes.
ModificadaMedia (5)3.2%—FreeradiusRedhat Enterprise LinuxRedhat Fedora Core9/2/200516/6/2026
FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that cause a memcpy operation with a -1 argument.
ModificadaMedia (5)3.4%—Apache MOD Auth Radius11/1/200516/6/2026
Apache mod_auth_radius 1.5.4 and libpam-radius-auth allow remote malicious RADIUS servers to cause a denial of service (crash) via a RADIUS_REPLY_MESSAGE with a RADIUS attribute length of 1, which leads to a memcpy operation with a -1 length argument.
ModificadaAlta (10)5.2%—Yard RadiusYard Radius Project Yard Radius10/1/200516/6/2026
Buffer overflow in the process_menu function in yardradius 1.0.20 allows remote attackers to execute arbitrary code.
ModificadaMedia (5)1.6%—GNU Radius23/12/200416/6/2026
Integer overflow in the asn_decode_string() function defined in asn1.c in radiusd for GNU Radius 1.1 and 1.2 before 1.2.94, when compiled with the --enable-snmp option, allows remote attackers to cause a denial of service (daemon crash) via certain SNMP requests.
ModificadaMedia (5)1.6%—GNU Radius6/12/200416/6/2026
The radius daemon (radiusd) for GNU Radius 1.1, when compiled with the -enable-snmp option, allows remote attackers to cause a denial of service (server crash) via malformed SNMP messages containing an invalid OID.
ModificadaMedia (5)3.7%—Freeradius3/11/200416/6/2026
FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (server crash) by sending an Ascend-Send-Secret attribute without the required leading packet.
ModificadaMedia (5)3.5%—GNU Radius3/3/200416/6/2026
The rad_print_request function in logger.c for GNU Radius daemon (radiusd) before 1.2 allows remote attackers to cause a denial of service (crash) via a UDP packet with an Acct-Status-Type attribute without a value and no Acct-Session-Id attribute, which causes a null dereference.
ModificadaMedia (5)4.6%💥 ExploitFreeradius15/12/200316/6/2026
rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADIUS string attribute with a tag, which causes memcpy to be called with a -1 length argument, as demonstrated using the Tunnel-Password attribute.
ModificadaAlta (10)3.7%—FreeradiusAI15/12/200316/6/2026
Stack-based buffer overflow in SMB_Logon_Server of the rlm_smb experimental module for FreeRADIUS 0.9.3 and earlier allows remote attackers to execute arbitrary code via a long User-Password attribute.
ModificadaAlta (7.5)4.2%—Cistron Radius Daemon7/8/200316/6/2026
Cistron RADIUS daemon (radiusd-cistron) 1.6.6 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large value in an NAS-Port attribute, which is interpreted as a negative number and causes a buffer overflow.
ModificadaMedia (5)1.4%—Freeradius25/6/200216/6/2026
FreeRADIUS RADIUS server allows remote attackers to cause a denial of service (CPU consumption) via a flood of Access-Request packets.
ModificadaMedia (5)5.4%—FreeradiusGNU RadiusIcradiusLivingston Radius+74/3/200216/6/2026
Multiple RADIUS implementations do not properly validate the Vendor-Length of the Vendor-Specific attribute, which allows remote attackers to cause a denial of service (crash) via a Vendor-Length that is less than 2.
ModificadaAlta (7.5)8.5%—Ascend RadiusFreeradiusGNU RadiusIcradius+84/3/200216/6/2026
Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.
ModificadaBaja (2.1)0.85%💥 ExploitMerit AAA Radius Server7/9/200116/6/2026
rlmadmin RADIUS management utility in Merit AAA Server 3.8M, 5.01, and possibly other versions, allows local users to read arbitrary files via a symlink attack on the rlmadmin.help file.
ModificadaAlta (10)6.7%—Lucent RadiusMerit Radius21/7/200116/6/2026
Multiple buffer overflows in RADIUS daemon radiusd in (1) Merit 3.6b and (2) Lucent 2.1-2 RADIUS allow remote attackers to cause a denial of service or execute arbitrary commands.
ModificadaMedia (5)1.4%—Lucent RadiusSimon Horms Radius13/7/200116/6/2026
Directory traversal vulnerability in Livingston/Lucent RADIUS before 2.1.va.1 may allow attackers to read arbitrary files via a .. (dot dot) attack.
ModificadaAlta (7.5)2.8%—Lucent RadiusSimon Horms Radius6/7/200116/6/2026
Format string vulnerabilities in Livingston/Lucent RADIUS before 2.1.va.1 may allow local or remote attackers to cause a denial of service and possibly execute arbitrary code via format specifiers that are injected into log messages.
ModificadaMedia (5)1.4%—Icradius24/4/200016/6/2026
Buffer overflow in IC Radius package allows a remote attacker to cause a denial of service via a long user name.
ModificadaAlta (7.5)3.0%—Livingston Radius1/12/199716/6/2026
Livingston RADIUS code has a buffer overflow which can allow remote execution of commands as root.
Orbitaley — Vulnerabilidades