Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. When the user doesn't exist PAM try to authenticate with root and in the case of an empty password it successfully authenticate.
CVSS Information
N/A
Vulnerability Type
认证机制不恰当
Vulnerability Title
Linux-pam 授权问题漏洞
Vulnerability Description
Linux-pam是Linux-pam团队的一款用于Linux的支持插拔式的系统身份验证软件。 Linux-Pam 存在授权问题漏洞,攻击者可利用该漏洞可以通过Linux-Pam的root空密码绕过限制,从而升级他的特权。
CVSS Information
N/A
Vulnerability Type
N/A