Lucene search

K
nvd[email protected]NVD:CVE-2011-0011
HistoryJun 21, 2012 - 3:55 p.m.

CVE-2011-0011

2012-06-2115:55:05
CWE-287
web.nvd.nist.gov
8

CVSS2

4.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:H/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.012

Percentile

85.2%

qemu-kvm before 0.11.0 disables VNC authentication when the password is cleared, which allows remote attackers to bypass authentication and establish VNC sessions.

Affected configurations

Nvd
Node
qemuqemuRange0.11.0rc2
OR
qemuqemuMatch0.1.0
OR
qemuqemuMatch0.1.1
OR
qemuqemuMatch0.1.2
OR
qemuqemuMatch0.1.3
OR
qemuqemuMatch0.1.4
OR
qemuqemuMatch0.1.5
OR
qemuqemuMatch0.1.6
OR
qemuqemuMatch0.10.0
OR
qemuqemuMatch0.10.1
OR
qemuqemuMatch0.10.2
OR
qemuqemuMatch0.10.3
OR
qemuqemuMatch0.10.4
OR
qemuqemuMatch0.10.5
OR
qemuqemuMatch0.10.6
OR
qemuqemuMatch0.11.0rc0
OR
qemuqemuMatch0.11.0rc1
VendorProductVersionCPE
qemuqemu*cpe:2.3:a:qemu:qemu:*:rc2:*:*:*:*:*:*
qemuqemu0.1.0cpe:2.3:a:qemu:qemu:0.1.0:*:*:*:*:*:*:*
qemuqemu0.1.1cpe:2.3:a:qemu:qemu:0.1.1:*:*:*:*:*:*:*
qemuqemu0.1.2cpe:2.3:a:qemu:qemu:0.1.2:*:*:*:*:*:*:*
qemuqemu0.1.3cpe:2.3:a:qemu:qemu:0.1.3:*:*:*:*:*:*:*
qemuqemu0.1.4cpe:2.3:a:qemu:qemu:0.1.4:*:*:*:*:*:*:*
qemuqemu0.1.5cpe:2.3:a:qemu:qemu:0.1.5:*:*:*:*:*:*:*
qemuqemu0.1.6cpe:2.3:a:qemu:qemu:0.1.6:*:*:*:*:*:*:*
qemuqemu0.10.0cpe:2.3:a:qemu:qemu:0.10.0:*:*:*:*:*:*:*
qemuqemu0.10.1cpe:2.3:a:qemu:qemu:0.10.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 171

CVSS2

4.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:A/AC:H/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.012

Percentile

85.2%