Vulnerability Details CVE-2024-9313
Authd PAM module before version 0.3.5 can allow broker-managed users to impersonate any other user managed by the same broker and perform any PAM operation with it, including authenticating as them.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.7%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-9313
-
cpe:2.3:a:canonical:authd:0.1
-
cpe:2.3:a:canonical:authd:0.2.1
-
cpe:2.3:a:canonical:authd:0.3.2
-
cpe:2.3:a:canonical:authd:0.3.3