Pyrad Project maintains a lightweight RADIUS client library with a focused vulnerability surface centered on its single pyrad product. The recurring weakness classes—improper input validation and use of insufficiently random values—reflect authentication-protocol parsing and cryptographic-seed handling endemic to RADIUS implementations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pyrad Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-0294MEDIUM packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes it easier for remote attackers to obtain sensitive informat | Jan 28, 2020 | 5.9 | 19 | NO | NO |
CVE-2013-0342MEDIUM The CreateID function in packet.py in pyrad before 2.1 uses sequential packet IDs, which makes it easier for remote attackers to spoof packets by predicting the next ID, a differen | Dec 9, 2019 | 4.3 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pyrad Project.
Media articles that mention a CVE ID that affects a product developed by Pyrad Project — matched by CVE ID, not by vendor name.