Lucene search

K

Chetcpasswd Security Vulnerabilities

cve
cve

CVE-2006-6683

Pedro Lineu Orso chetcpasswd 2.4.1 and earlier verifies and updates user accounts via custom code that processes /etc/shadow and does not follow the PAM configuration, which might allow remote attackers to bypass intended restrictions implemented through PAM.

7.3AI Score

0.003EPSS

2006-12-21 07:28 PM
24
cve
cve

CVE-2006-6684

Heap-based buffer overflow in Pedro Lineu Orso chetcpasswd before 2.4 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long X-Forwarded-For HTTP header. NOTE: The provenance of this information is unknown; the details are obtained so...

8.4AI Score

0.046EPSS

2006-12-21 07:28 PM
20
cve
cve

CVE-2006-6685

Heap-based buffer overflow in Pedro Lineu Orso chetcpasswd 2.3.3 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long REMOTE_ADDR environment variable. NOTE: The provenance of this information is unknown; the details are obtained solely ...

8AI Score

0.0004EPSS

2006-12-21 07:28 PM
29