Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2002-1160

The default configuration of the pam_xauth module forwards MIT-Magic-Cookies to new X sessions, which could allow local users to gain root privileges by stealing the cookies from a temporary .xauth file, which is created with the original user's credentials after root uses su.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.8%
CVSS Severity
CVSS v2 Score 7.2
References
Products affected by CVE-2002-1160
  • Redhat » Linux » Version: 7.1
    cpe:2.3:o:redhat:linux:7.1
  • Redhat » Linux » Version: 7.2
    cpe:2.3:o:redhat:linux:7.2
  • Redhat » Linux » Version: 7.3
    cpe:2.3:o:redhat:linux:7.3
  • Redhat » Linux » Version: 8.0
    cpe:2.3:o:redhat:linux:8.0


Contact Us

Shodan ® - All rights reserved