Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-5394

/bin/login in shadow 4.0.18.1 in Debian GNU/Linux, and probably other Linux distributions, allows local users in the utmp group to overwrite arbitrary files via a symlink attack on a temporary file referenced in a line (aka ut_line) field in a utmp entry.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 25.4%
CVSS Severity
CVSS v2 Score 7.2
References
Products affected by CVE-2008-5394
  • Debian » Shadow » Version: 4.0.18.1
    cpe:2.3:a:debian:shadow:4.0.18.1


Contact Us

Shodan ® - All rights reserved