Lucene search

K
cve[email protected]CVE-2004-1342
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2004-1342

2022-10-0316:14:12
web.nvd.nist.gov
25
cve
2004
1342
cvs
debian
gnu
linux
authentication
bypass
pserver
access
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.7 Medium

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.3%

CVS 1.12 and earlier on Debian GNU/Linux, when using the repouid patch, allows remote attackers to bypass authentication via the pserver access method.

Affected configurations

NVD
Node
cvscvsMatch1.10
OR
cvscvsMatch1.10.6
OR
cvscvsMatch1.10.7
OR
cvscvsMatch1.10.8
OR
cvscvsMatch1.11
OR
cvscvsMatch1.11.1
OR
cvscvsMatch1.11.1_p1
OR
cvscvsMatch1.11.2
OR
cvscvsMatch1.11.3
OR
cvscvsMatch1.11.4
OR
cvscvsMatch1.11.5
OR
cvscvsMatch1.11.6
OR
cvscvsMatch1.11.10
OR
cvscvsMatch1.11.11
OR
cvscvsMatch1.11.14
OR
cvscvsMatch1.11.15
OR
cvscvsMatch1.11.16
OR
cvscvsMatch1.12

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.7 Medium

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.3%