Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web server in IEA Software RadiusNT and RadiusX 5.1.38 and other versions before 5.1.44, Emerald 5.0.49 and other versions before 5.0.52, Air Marshal 2.0.4 and other versions before 2.0.8, and Radius test client (aka Radlogin) 4.0.20 and earlier, allows remote attackers to cause a denial of service (crash) via an HTTP Content-Length header with a negative value, which triggers a single byte overwrite of memory using a NULL terminator. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IEA Software RadiusNT and RadiusX和Radius test client 拒绝服务漏洞
Vulnerability Description
IEA Software RadiusNT and RadiusX是一款著名的Radius认证服务器程序。 IEA Software RadiusNT and RadiusX 和Radius test client (又称Radlogin) 4.0.20 及其早期版本中的网络服务器, 远程攻击者借助一个为负值的HTTP Content-Length页眉,造成拒绝服务 (崩溃)。该页眉可以通过一个NULL结束符来触发一个单一字节的内存重写。
CVSS Information
N/A
Vulnerability Type
N/A