CVE-2004-2163
login_radius on OpenBSD 3.2, 3.5, and possibly other versions does not verify the shared secret in a response packet fro
login_radius on OpenBSD 3.2, 3.5, and possibly other versions does not verify the shared secret in a response packet from a RADIUS server, which allows remote attackers to bypass authentication by spoofing server replies.
HIGH · CVSS 7.5
EPSS 0.01153
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0