Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-4128

Опубликовано: 01 дек. 2009
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted portion of a password with the actual password, which makes it easier for physically proximate attackers to conduct brute force attacks and bypass authentication by submitting a password whose length is 1.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:grub_2:1.97:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00039
Низкий

7.2 High

CVSS2

Дефекты

CWE-287

Связанные уязвимости

ubuntu
около 16 лет назад

GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted portion of a password with the actual password, which makes it easier for physically proximate attackers to conduct brute force attacks and bypass authentication by submitting a password whose length is 1.

redhat
около 16 лет назад

GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted portion of a password with the actual password, which makes it easier for physically proximate attackers to conduct brute force attacks and bypass authentication by submitting a password whose length is 1.

debian
около 16 лет назад

GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted ...

github
больше 3 лет назад

GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted portion of a password with the actual password, which makes it easier for physically proximate attackers to conduct brute force attacks and bypass authentication by submitting a password whose length is 1.

EPSS

Процентиль: 12%
0.00039
Низкий

7.2 High

CVSS2

Дефекты

CWE-287