Computer Security
[EN] securityvulns.ru
no-pyccku



RADIUS protocol and implementation weakness
updated since 13.11.2001
Published:14.11.2001
Source:BUGTRAQ
SecurityVulns ID:1563
Type:remote
Level:6/10
Description:There are few cryptographic problems allow to analize sniffed traffic. There is a possibility of request spoofing. Some implementation problems allow to DoS server or to elevate priveges.
Affected:MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Advanced Server
 CISTRON : Cistron RADIUS server 1.6
Original documentdocumentAlan DeKok, Re: More problems with RADIUS (protocol and implementations) (14.11.2001)
 document3APA3A, more RADIUS authentication attack scenarios (14.11.2001)
 document3APA3A, More problems with RADIUS (protocol and implementations) (13.11.2001)
 documentJoshua Hill, An Analysis of the RADIUS Authentication Protocol (13.11.2001)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server