- Description
- RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to any other response using a chosen-prefix collision attack against MD5 Response Authenticator signature.
- Source
- cret@cert.org
- NVD status
- Modified
- Products
- freeradius, brocade_sannav, fabric_operating_system, sonicos
CVSS 3.1
- Type
- Primary
- Base score
- 9
- Impact score
- 6
- Exploitability score
- 2.2
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
- Severity
- CRITICAL
- nvd@nist.gov
- CWE-354
- Hype score
- Not currently trending
A critical vulnerability CVE-2024-3596 impacts Hitachi Energy AFS, AFR, and AFF series, enabling local attackers to forge RADIUS protocol responses, risking data integrity and system availability. #HitachiEnergy #RADIUSAttack #Japan https://t.co/twrJCA0rtL
@TweetThreatNews
17 Dec 2025
30 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️Vulnerabilidades en HP-UX PAM RADIUS de HPE ❗CVE-2024-3596 ❗CVE-2015-9542 ➡️Más info: https://t.co/AjDpygAAUy https://t.co/8XaPbGVQ3I
@CERTpy
1 Sept 2025
169 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️Múltiples vulnerabilidades en Dell Enterprise SONiC ❗CVE-2024-3596 ❗CVE-2025-24928 ❗CVE-2025-27113 ➡️Más info: https://t.co/IH097zEMBh https://t.co/Gur9b4e8Xl
@CERTpy
7 Jul 2025
146 Impressions
0 Retweets
0 Likes
1 Bookmark
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:freeradius:freeradius:*:*:*:*:*:*:*:*",
"matchCriteriaId": "1C73FF4C-13DE-4050-BD56-447F9382AA4D",
"versionEndExcluding": "3.0.27",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:broadcom:brocade_sannav:-:*:*:*:*:*:*:*",
"matchCriteriaId": "75B1EDA5-F189-440D-AD0E-C70DD2C0FEE5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:o:broadcom:fabric_operating_system:-:*:*:*:*:*:*:*",
"matchCriteriaId": "046FB51E-B768-44D3-AEB5-D857145CA840",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:o:sonicwall:sonicos:-:*:*:*:*:*:*:*",
"matchCriteriaId": "1CF61DAA-8295-4407-B125-1714E1565965",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]