Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-3042

EPSS 2.20% · P85
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-3042

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
miniserv.pl in Webmin before 1.230 and Usermin before 1.160, when "full PAM conversations" is enabled, allows remote attackers to bypass authentication by spoofing session IDs via certain metacharacters (line feed or carriage return).
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Webmin/Usermin远程PAM认证绕过漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Webmin是一款基于WEB的Unix和Linux操作系统系统管理接口;Usermin则设计用于操作用户级别的任务,允许Unix系统中用户简单的进行接收邮件、执行SSH和邮件转发配置。 Webmin和Usermin中存在远程PAM认证绕过漏洞。如果Usermin或Webmin配置模块启用了"Support full PAM conversations?"选项的话,就可能允许远程攻击者绕过认证,完全控制受影响的系统。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-3042

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-3042

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-09-22 · 14 CVEs total

CVE-2005-3031vxFtpSrv USER 缓冲区溢出漏洞
CVE-2005-3032Cambridge Computer Corporation VxTftpSrv远程溢出漏洞
CVE-2005-3033vxWeb 栈缓冲区溢出漏洞
CVE-2005-3034Compuware DriverStudio DSRsvc.exe空会话认证绕过漏洞
CVE-2005-3035Compuware DriverStudio DSRsvc.exe远程拒绝服务漏洞
CVE-2005-3036File Transfer Anywhere注册表键密码信息泄露漏洞
CVE-2005-3037Handy Address Book Server跨站脚本攻击漏洞
CVE-2005-3038Hosting Controller不明信息泄露漏洞
CVE-2005-3039Mall23 Infopage.ASP SQL注入漏洞
CVE-2005-3040TAC Vista ISALogin.dll 目录遍历漏洞
CVE-2005-3041Opera Software Opera 资料不足漏洞
CVE-2005-3043Mall23 AddItem.ASP SQL注入漏洞
CVE-2005-3044Linux内核多个拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-3042

No comments yet


Leave a comment