Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-4168

Опубликовано: 03 июл. 2014
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:kryo:iodine:*:rc1:*:*:*:*:*:*
Версия до 0.6.0 (включая)
cpe:2.3:a:kryo:iodine:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.2:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.3:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.4:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.2:*:*:*:*:*:*:*

EPSS

Процентиль: 89%
0.03752
Низкий

5 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

ubuntu
около 12 лет назад

(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.

debian
около 12 лет назад

1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote atta ...

github
больше 4 лет назад

(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.

EPSS

Процентиль: 89%
0.03752
Низкий

5 Medium

CVSS2

Дефекты

CWE-287