Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2916

Опубликовано: 15 нояб. 2019
Источник: nvd
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

qtnx 0.9 stores non-custom SSH keys in a world-readable configuration file. If a user has a world-readable or world-executable home directory, another local system user could obtain the private key used to connect to remote NX sessions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qtnx_project:qtnx:0.9:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00061
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 6 лет назад

qtnx 0.9 stores non-custom SSH keys in a world-readable configuration file. If a user has a world-readable or world-executable home directory, another local system user could obtain the private key used to connect to remote NX sessions.

CVSS3: 5.5
debian
около 6 лет назад

qtnx 0.9 stores non-custom SSH keys in a world-readable configuration ...

CVSS3: 5.5
github
почти 4 года назад

qtnx 0.9 stores non-custom SSH keys in a world-readable configuration file. If a user has a world-readable or world-executable home directory, another local system user could obtain the private key used to connect to remote NX sessions.

EPSS

Процентиль: 19%
0.00061
Низкий

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-312