Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cr48-c784-cmxh

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.

EPSS

Процентиль: 75%
0.00902
Низкий

Связанные уязвимости

ubuntu
почти 20 лет назад

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.

nvd
почти 20 лет назад

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.

debian
почти 20 лет назад

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through ...

EPSS

Процентиль: 75%
0.00902
Низкий