CVE-2003-0786

The SSH1 PAM challenge response authentication in OpenSSH 3.7.1 and 3.7.1p1, when Privilege Separation is disabled, does not check the result of the authentication attempt, which can allow remote attackers to gain privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openbsd:openssh:3.7.1:*:*:*:*:*:*:*
cpe:2.3:a:openbsd:openssh:3.7.1p1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2003-11-17 05:00

Updated : 2023-12-10 10:17


NVD link : CVE-2003-0786

Mitre link : CVE-2003-0786

CVE.ORG link : CVE-2003-0786


JSON object : View

Products Affected

openbsd

  • openssh