CVE-2000-0575
Published Jul 5, 2000
Last updated 7 years ago
Overview
- Description
- SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who is logging in, which could allow remote attackers to sniff the ticket cache if the home directory is installed on NFS.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ssh:ssh:1.2.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "338EDA76-05D6-48C0-952E-6244A5F206F3" } ], "operator": "OR" } ] } ]