Логотип exploitDog
bind:CVE-2018-16791
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-16791

Количество 2

Количество 2

nvd логотип

CVE-2018-16791

больше 6 лет назад

In SolarWinds SFTP/SCP Server through 2018-09-10, the configuration file is world readable and writable, and stores user passwords in an insecure manner, allowing an attacker to determine passwords for potentially privileged accounts. This also grants the attacker an ability to backdoor the server.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2374-xjj3-xj59

около 3 лет назад

In SolarWinds SFTP/SCP Server through 2018-09-10, the configuration file is world readable and writable, and stores user passwords in an insecure manner, allowing an attacker to determine passwords for potentially privileged accounts. This also grants the attacker an ability to backdoor the server.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-16791

In SolarWinds SFTP/SCP Server through 2018-09-10, the configuration file is world readable and writable, and stores user passwords in an insecure manner, allowing an attacker to determine passwords for potentially privileged accounts. This also grants the attacker an ability to backdoor the server.

CVSS3: 9.8
0%
Низкий
больше 6 лет назад
github логотип
GHSA-2374-xjj3-xj59

In SolarWinds SFTP/SCP Server through 2018-09-10, the configuration file is world readable and writable, and stores user passwords in an insecure manner, allowing an attacker to determine passwords for potentially privileged accounts. This also grants the attacker an ability to backdoor the server.

CVSS3: 9.8
0%
Низкий
около 3 лет назад

Уязвимостей на страницу