Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33898
HistoryJan 26, 2022 - 5:09 a.m.

Authentication Bypass

2022-01-2605:09:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

0.002 Low

EPSS

Percentile

53.5%

strongswan is vulnerable to Authentication Bypass. The vulnerability exists due to improper handling of EAP-Success messages. A remote attacker can send a specially crafted (early) EAP-Success message to the affected system and bypass authentication or perform a denial of service attack.