3.5

CVE-2007-6505

Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sun ≫ Solaris Version 9 Edition sparc
Sun ≫ Solaris Version 9 Edition x86
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.76% 0.503
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 3.5 6.8 2.9
AV:N/AC:M/Au:S/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/44332
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103172-1
Patch
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201310-1
https://exchange.xforce.ibmcloud.com/vulnerabilities/39185
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5282