Описание
(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.
Ссылки
Уязвимые конфигурации
Конфигурация 1Версия до 0.6.0 (включая)
Одно из
cpe:2.3:a:kryo:iodine:*:rc1:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.2:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.3:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.3.4:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.0:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.1:*:*:*:*:*:*:*
cpe:2.3:a:kryo:iodine:0.5.2:*:*:*:*:*:*:*
EPSS
Процентиль: 77%
0.01036
Низкий
5 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
ubuntu
больше 11 лет назад
(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.
debian
больше 11 лет назад
1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote atta ...
github
больше 3 лет назад
(1) iodined.c and (2) user.c in iodine before 0.7.0 allows remote attackers to bypass authentication by continuing execution after an error has been triggering.
EPSS
Процентиль: 77%
0.01036
Низкий
5 Medium
CVSS2
Дефекты
CWE-287