VYPR

Packetfence

Sign in to watch

by Packetfence

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2012-47420.000.02Aug 31, 2012The web_node_register function in web.pm in PacketFence before 3.0.2 might allow remote attackers to execute arbitrary code via unspecified vectors.
CVE-2012-47410.000.00Aug 31, 2012The RADIUS extension in PacketFence before 3.3.0 uses a different user name than is used for authentication for users with custom VLAN assignment extensions, which allows remote attackers to spoof user identities via the User-Name RADIUS attribute.
CVE-2012-47400.000.00Aug 31, 2012Cross-site scripting (XSS) vulnerability in the captive portal in PacketFence before 3.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.