6.9

CVE-2009-0656

Exploit
Asus SmartLogon 1.0.0005 allows physically proximate attackers to bypass "security functions" by presenting an image with a modified viewpoint that matches the posture of a stored image of the authorized notebook user.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Asus ≫ Smartlogon Version 1.0.0005
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.43% 0.345
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://security.bkis.vn/?p=292
http://www.blackhat.com/html/bh-dc-09/bh-dc-09-archives.html#Nguyen
http://www.blackhat.com/presentations/bh-dc-09/Nguyen/BlackHat-DC-09-Nguyen-Face-not-your-password.pdf
Exploit
http://www.securityfocus.com/archive/1/498997
http://www.securityfocus.com/bid/32700
https://exchange.xforce.ibmcloud.com/vulnerabilities/48962