Security Advisory

CVE-2005-0002

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-01-19 05:00:00
Last updated 2024-08-07 20:57:40
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

poppassd_pam 1.0 and earlier, when changing a user password, does not verify that the user entered the old password correctly, which allows remote attackers to change passwords for arbitrary users.