SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries.
References
Configurations
Information
Published : 2005-05-18 21:00
Updated : 2017-10-10 18:30
NVD link : CVE-2005-1454
Mitre link : CVE-2005-1454
JSON object : View
CWE
Products Affected
freeradius
- freeradius