PT-2007-6114 · Hewlett Packard · Hp-Ux
Publicado
2007-09-18
·
Atualizado
2017-09-29
·
CVE-2007-5008
CVSS v2.0
9.0
Alta
| Vetor | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
HP-UX versions B.11.11, B.11.23, B.11.31
Description
The issue concerns the logins command, which fails to correctly report password status. This allows remote attackers to gain privileges under certain conditions when password issues are not properly detected.
Recommendations
For HP-UX version B.11.11, update to a version that correctly reports password status.
For HP-UX version B.11.23, update to a version that correctly reports password status.
For HP-UX version B.11.31, update to a version that correctly reports password status.
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Hp-Ux