Vulnerabilities (CVE)

Filtered by vendor Opennds Subscribe
Filtered by product Captive Portal
Total 7 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-38324 1 Opennds 1 Captive Portal 2024-01-26 N/A 5.3 MEDIUM
An issue was discovered in OpenNDS before 10.1.2. It allows users to skip the splash page sequence (and directly authenticate) when it is using the default FAS key and OpenNDS is configured as FAS.
CVE-2023-38320 1 Opennds 1 Captive Portal 2023-12-10 N/A 7.5 HIGH
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a show_preauthpage NULL pointer dereference that can be triggered with a crafted GET HTTP with a missing User-Agent header. Triggering this issue results in crashing OpenNDS (a Denial-of-Service condition).
CVE-2023-38316 1 Opennds 1 Captive Portal 2023-12-10 N/A 9.8 CRITICAL
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. When the custom unescape callback is enabled, attackers can execute arbitrary OS commands by inserting them into the URL portion of HTTP GET requests.
CVE-2023-38315 1 Opennds 1 Captive Portal 2023-12-10 N/A 7.5 HIGH
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a try_to_authenticate NULL pointer dereference that can be triggered with a crafted GET HTTP with a missing client token query string parameter. Triggering this issue results in crashing OpenNDS (a Denial-of-Service condition).
CVE-2023-38322 1 Opennds 1 Captive Portal 2023-12-10 N/A 7.5 HIGH
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a do_binauth NULL pointer dereference that be triggered with a crafted GET HTTP request with a missing User-Agent HTTP header. Triggering this issue results in crashing OpenNDS (a Denial-of-Service condition). The issue occurs when the client is about to be authenticated, and can be triggered only when the BinAuth option is set.
CVE-2023-38313 1 Opennds 1 Captive Portal 2023-12-10 N/A 7.5 HIGH
An issue was discovered in OpenNDS Captive Portal before 10.1.2. it has a do_binauth NULL pointer dereference that can be triggered with a crafted GET HTTP request with a missing client redirect query string parameter. Triggering this issue results in crashing openNDS (a Denial-of-Service condition). The issue occurs when the client is about to be authenticated, and can be triggered only when the BinAuth option is set.
CVE-2023-38314 1 Opennds 1 Captive Portal 2023-12-10 N/A 6.5 MEDIUM
An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a NULL pointer dereference in preauthenticated() that can be triggered with a crafted GET HTTP request with a missing redirect query string parameter. Triggering this issue results in crashing OpenNDS (a Denial-of-Service condition).