Beveiligingsadvies

CVE-2007-6505

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2007-12-20 23:00:00
Laatst bijgewerkt 2024-08-07 16:11:06
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Solaris 9, with Solaris Auditing enabled and certain patches for sshd installed, can generate audit records with an audit-ID of 0 even when the user logging into ssh is not root, which makes it easier for attackers to avoid detection and can make it more difficult to conduct forensics activities.