Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2187

Опубликовано: 27 нояб. 2019
Источник: nvd
CVSS3: 7.8
CVSS2: 4.6
EPSS Низкий

Описание

xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:xscreensaver_project:xscreensaver:*:*:*:*:*:*:*:*
Версия до 5.14 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 28%
0.001
Низкий

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 6 лет назад

xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.

redhat
больше 14 лет назад

xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.

CVSS3: 7.8
debian
около 6 лет назад

xscreensaver before 5.14 crashes during activation and leaves the scre ...

CVSS3: 7.8
github
больше 3 лет назад

xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.

EPSS

Процентиль: 28%
0.001
Низкий

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-306