2.1
CVSSv2

CVE-2006-4537

Published: 05/09/2006 Updated: 20/07/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to an audit log file when there is a successful connection after a "network breakin" event, which allows local users to obtain passwords by reading the file.

Vulnerable Product Search on Vulmon Subscribe to Product

dec dec openvms alpha 8.2

dec dec openvms alpha 7.3.2