Skip to main content

Vendor/product archive

andrew_morgan / linux_pam CVEs

Beta · best-effort

2 CVEs tagged to andrew_morgan / linux_pam0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2007-0003

Published Jan 23, 2007

pam_unix.so in Linux-PAM 0.99.7.0 allows context-dependent attackers to log into accounts whose password hash, as stored in /etc/passwd or /etc/shadow, has only two characters.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-0388

Published Jul 24, 2003

pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to re…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1