7.2

CVE-2006-1283

opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
FreebsdFreebsd Version1.1.5.1
FreebsdFreebsd Version2.0
FreebsdFreebsd Version2.0.5
FreebsdFreebsd Version2.1 Updatestable
FreebsdFreebsd Version2.1.0
FreebsdFreebsd Version2.1.5
FreebsdFreebsd Version2.1.6
FreebsdFreebsd Version2.1.6.1
FreebsdFreebsd Version2.1.7
FreebsdFreebsd Version2.1.7.1
FreebsdFreebsd Version2.2
FreebsdFreebsd Version2.2.1
FreebsdFreebsd Version2.2.2
FreebsdFreebsd Version2.2.3
FreebsdFreebsd Version2.2.4
FreebsdFreebsd Version2.2.5
FreebsdFreebsd Version2.2.6
FreebsdFreebsd Version2.2.7
FreebsdFreebsd Version2.2.8
FreebsdFreebsd Version3.0
FreebsdFreebsd Version3.0 Updatereleng
FreebsdFreebsd Version3.1
FreebsdFreebsd Version3.2
FreebsdFreebsd Version3.3
FreebsdFreebsd Version3.4
FreebsdFreebsd Version3.5
FreebsdFreebsd Version3.5 Updatestable
FreebsdFreebsd Version3.5.1
FreebsdFreebsd Version3.5.1 Updaterelease
FreebsdFreebsd Version3.5.1 Updatestable
FreebsdFreebsd Version4.0
FreebsdFreebsd Version4.0 Updatealpha
FreebsdFreebsd Version4.0 Updatereleng
FreebsdFreebsd Version4.1
FreebsdFreebsd Version4.1.1
FreebsdFreebsd Version4.1.1 Updaterelease
FreebsdFreebsd Version4.1.1 Updatestable
FreebsdFreebsd Version4.2
FreebsdFreebsd Version4.2 Updatestable
FreebsdFreebsd Version4.3
FreebsdFreebsd Version4.3 Updaterelease
FreebsdFreebsd Version4.3 Updaterelease_p38
FreebsdFreebsd Version4.3 Updatereleng
FreebsdFreebsd Version4.3 Updatestable
FreebsdFreebsd Version4.4
FreebsdFreebsd Version4.4 Updaterelease_p42
FreebsdFreebsd Version4.4 Updatereleng
FreebsdFreebsd Version4.4 Updatestable
FreebsdFreebsd Version4.5
FreebsdFreebsd Version4.5 Updaterelease
FreebsdFreebsd Version4.5 Updaterelease_p32
FreebsdFreebsd Version4.5 Updatereleng
FreebsdFreebsd Version4.5 Updatestable
FreebsdFreebsd Version4.6
FreebsdFreebsd Version4.6 Updaterelease
FreebsdFreebsd Version4.6 Updaterelease_p20
FreebsdFreebsd Version4.6 Updatereleng
FreebsdFreebsd Version4.6 Updatestable
FreebsdFreebsd Version4.6.2
FreebsdFreebsd Version4.7
FreebsdFreebsd Version4.7 Updaterelease
FreebsdFreebsd Version4.7 Updaterelease_p17
FreebsdFreebsd Version4.7 Updatereleng
FreebsdFreebsd Version4.7 Updatestable
FreebsdFreebsd Version4.8
FreebsdFreebsd Version4.8 Updatepre-release
FreebsdFreebsd Version4.8 Updaterelease_p7
FreebsdFreebsd Version4.8 Updatereleng
FreebsdFreebsd Version4.9
FreebsdFreebsd Version4.9 Updatepre-release
FreebsdFreebsd Version4.9 Updatereleng
FreebsdFreebsd Version4.10
FreebsdFreebsd Version4.10 Updaterelease
FreebsdFreebsd Version4.10 Updaterelease_p8
FreebsdFreebsd Version4.10 Updatereleng
FreebsdFreebsd Version4.11 Updaterelease_p3
FreebsdFreebsd Version4.11 Updatereleng
FreebsdFreebsd Version4.11 Updatestable
FreebsdFreebsd Version5.0
FreebsdFreebsd Version5.0 Updatealpha
FreebsdFreebsd Version5.0 Updaterelease_p14
FreebsdFreebsd Version5.0 Updatereleng
FreebsdFreebsd Version5.1
FreebsdFreebsd Version5.1 Updatealpha
FreebsdFreebsd Version5.1 Updaterelease
FreebsdFreebsd Version5.1 Updaterelease_p5
FreebsdFreebsd Version5.1 Updatereleng
FreebsdFreebsd Version5.2
FreebsdFreebsd Version5.2.1 Updaterelease
FreebsdFreebsd Version5.2.1 Updatereleng
FreebsdFreebsd Version5.3
FreebsdFreebsd Version5.3 Updaterelease
FreebsdFreebsd Version5.3 Updatereleng
FreebsdFreebsd Version5.3 Updatestable
FreebsdFreebsd Version5.4 Updatepre-release
FreebsdFreebsd Version5.4 Updaterelease
FreebsdFreebsd Version5.4 Updatereleng
FreebsdFreebsd Version5.4 Updatestable
FreebsdFreebsd Version6.0 Updaterelease
FreebsdFreebsd Version6.0 Updatestable
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.135
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C