Vulnerability Description
The PPP Access Concentrator (PPPAC) in Internet Initiative Japan Inc. SEIL/x86 1.00 through 2.80, SEIL/X1 1.00 through 4.30, SEIL/X2 1.00 through 4.30, SEIL/B1 1.00 through 4.30, SEIL/Turbo 1.80 through 2.15, and SEIL/neu 2FE Plus 1.80 through 2.15 generates predictable random numbers, which allows remote attackers to bypass RADIUS authentication by sniffing RADIUS traffic.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Iij | Seil\%2Fx1 Firmware | 1.00 |
| Iij | Seil\/X1 | All versions |
| Iij | Seil\%2Fb1 Firmware | 1.00 |
| Iij | Seil\/B1 | All versions |
| Iij | Seil\%2Fx2 Firmware | 1.00 |
| Iij | Seil\/X2 | All versions |
| Iij | Seil\%2Fx86 Firmware | 1.00 |
| Iij | Seil\/X86 | All versions |
| Iij | Seil\%2Fturbo Firmware | 1.80 |
| Iij | Seil\/Turbo | All versions |
| Iij | Seil\%2Fneu 2Fe Plus Firmware | 1.80 |
| Iij | Seil\/Neu 2Fe Plus | All versions |
Related Weaknesses (CWE)
References
- http://jvn.jp/en/jp/JVN40079308/index.html
- http://jvndb.jvn.jp/ja/contents/2013/JVNDB-2013-000091.html
- http://osvdb.org/97619
- http://www.seil.jp/support/security/a01388.htmlVendor Advisory
- http://jvn.jp/en/jp/JVN40079308/index.html
- http://jvndb.jvn.jp/ja/contents/2013/JVNDB-2013-000091.html
- http://osvdb.org/97619
- http://www.seil.jp/support/security/a01388.htmlVendor Advisory
FAQ
What is CVE-2013-4708?
CVE-2013-4708 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The PPP Access Concentrator (PPPAC) in Internet Initiative Japan Inc. SEIL/x86 1.00 through 2.80, SEIL/X1 1.00 through 4.30, SEIL/X2 1.00 through 4.30, SEIL/B1 1.00 through 4.30, SEIL/Turbo 1.80 throu...
How severe is CVE-2013-4708?
CVE-2013-4708 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-4708?
Check the references section above for vendor advisories and patch information. Affected products include: Iij Seil\%2Fx1 Firmware, Iij Seil\/X1, Iij Seil\%2Fb1 Firmware, Iij Seil\/B1, Iij Seil\%2Fx2 Firmware.