Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The RADIUS extension in PacketFence before 3.3.0 uses a different user name than is used for authentication for users with custom VLAN assignment extensions, which allows remote attackers to spoof user identities via the User-Name RADIUS attribute.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PacketFence RADIUS扩展安全漏洞
Vulnerability Description
PacketFence 3.3.0之前版本中的RADIUS扩展中存在漏洞,该漏洞源于使用不同的用户名用于自定义的VLAN分配扩展的身份验证。远程攻击者可利用该漏洞通过‘User-Name RADIUS’属性,欺骗用户身份。
CVSS Information
N/A
Vulnerability Type
N/A