Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Solaris ssh 安全审计漏洞
Vulnerability Description
在打过特定SSHD补丁和开启认证功能的Solaries系统中,当用户以非root用户身份登录ssh时,系统会产生audit-ID为0的认证记录,该记录易于攻击者躲避侦查并使得辨认操作更难以进行。
CVSS Information
N/A
Vulnerability Type
N/A