6.8

CVE-2008-4315

tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed authentication attempts to the OpenPegasus CIM server, which makes it easier for remote attackers to avoid detection of password guessing attacks.

Data is provided by the National Vulnerability Database (NVD)
RedhatEnterprise Linux Version5.0 Editionserver
   OpenpegasusOpenpegasus Wbem Version2.7.0
RedhatEnterprise Linux Desktop Version5.0 Editionclient
   OpenpegasusOpenpegasus Wbem Version2.7.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.58% 0.798
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P