CVE-2005-1454
EPSS 0.76%Published: 5/19/2005Modified: 4/28/2026
Description
SQL injection vulnerability in the radius_xlat function in the SQL module for FreeRADIUS 1.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via (1) group_membership_query, (2) simul_count_query, or (3) simul_verify_query configuration entries.
Affected packages (1)
- Debian/freeradiusfrom 0, < 1.0.2-4