MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not properly restrict access to ports, which allows remote authenticated users to access the consoles of other users.
References
Link | Resource |
---|---|
http://www.securityfocus.com/archive/1/405546 | Exploit Vendor Advisory |
http://www.securityfocus.com/bid/14300 | |
http://securitytracker.com/id?1014517 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-07-19 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2329
Mitre link : CVE-2005-2329
JSON object : View
CWE
Products Affected
mrv_communications
- in_reach_lx_1000s
- in_reach_lx_8000s
- in_reach_lx_4000s