Логотип exploitDog
bind:CVE-2005-2949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2005-2949

Количество 2

Количество 2

nvd логотип

CVE-2005-2949

больше 20 лет назад

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-4c48-9rfv-8pr3

почти 4 года назад

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-2949

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

CVSS2: 7.5
1%
Низкий
больше 20 лет назад
github логотип
GHSA-4c48-9rfv-8pr3

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

1%
Низкий
почти 4 года назад

Уязвимостей на страницу