Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8x77-gm2m-rcr6

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to an audit log file when there is a successful connection after a "network breakin" event, which allows local users to obtain passwords by reading the file.

NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to an audit log file when there is a successful connection after a "network breakin" event, which allows local users to obtain passwords by reading the file.

EPSS

Процентиль: 22%
0.00074
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 19 лет назад

NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to an audit log file when there is a successful connection after a "network breakin" event, which allows local users to obtain passwords by reading the file.

EPSS

Процентиль: 22%
0.00074
Низкий

Дефекты

CWE-200