Beveiligingsadvies

CVE-2024-3596

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-07-09 12:02:53
Laatst bijgewerkt 2026-06-09 09:01:52
Toegewezen door certcc
CVSS-score 9.0
Status PUBLISHED

Beschrijving

RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to any other response using a chosen-prefix collision attack against MD5 Response Authenticator signature.