SSH 1.2.27 with Kerberos authentication support stores Kerberos tickets in a file which is created in the current directory of the user who is logging in, which could allow remote malicious users to sniff the ticket cache if the home directory is installed on NFS.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ssh ssh 1.2.27 |