The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote malicious users to obtain sensitive information or bypass additional access restrictions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
caldera openlinux 2.2 |
||
caldera openlinux 2.3 |