Privilege Escalation via Disabled Password in PAM 0.76

Privilege Escalation via Disabled Password in PAM 0.76

CVE-2002-1227 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

PAM 0.76 treats a disabled password as if it were an empty (null) password, which allows local and remote attackers to gain privileges as disabled users.

Learn more about our User Device Pen Test.