Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39672
HistoryMar 12, 2023 - 8:47 a.m.

Information Disclosure

2023-03-1208:47:02
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
freeradius
information disclosure
compute_password_element
offline dictionary attack
software

0.002 Low

EPSS

Percentile

52.7%

freeradius is vulnerable to Information Disclosure. The vulnerability exists in the compute_password_element function, which allows an attacker to substantially reduce the size of an offline dictionary attack, leaking information about the password