Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fq3g-66vv-fqfv

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.

EPSS

Процентиль: 16%
0.00053
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.

nvd
больше 19 лет назад

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.

debian
больше 19 лет назад

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10- ...

EPSS

Процентиль: 16%
0.00053
Низкий