7.5
CVSSv2

CVE-2000-0957

Published: 19/12/2000 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The pluggable authentication module for mysql (pam_mysql) prior to 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows malicious users to obtain plaintext passwords or hashes.

Vulnerable Product Search on Vulmon Subscribe to Product

pam mysql pam mysql 0.3

pam mysql pam mysql 0.4

pam mysql pam mysql 0.1

pam mysql pam mysql 0.2