7.8
CVE-2006-6683
- EPSS 0.19%
- Veröffentlicht 21.12.2006 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Pedro Lineu Orso chetcpasswd 2.4.1 and earlier verifies and updates user accounts via custom code that processes /etc/shadow and does not follow the PAM configuration, which might allow remote attackers to bypass intended restrictions implemented through PAM.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pedro Lineu Orso ≫ Chetcpasswd Version <= 2.4.1
Pedro Lineu Orso ≫ Chetcpasswd Version1.12
Pedro Lineu Orso ≫ Chetcpasswd Version2.1
Pedro Lineu Orso ≫ Chetcpasswd Version2.2.1
Pedro Lineu Orso ≫ Chetcpasswd Version2.3.1
Pedro Lineu Orso ≫ Chetcpasswd Version2.3.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.19% | 0.406 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:C/I:N/A:N
|