WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) does not properly handle when the Windows Administrator or Guest accounts are renamed after SSH key authentication has been configured, which allows remote attackers to use the original names during login.
References
Link | Resource |
---|---|
http://support.wrq.com/techdocs/1910.html | |
http://www.kb.cert.org/vuls/id/902110 | Third Party Advisory US Government Resource |
http://secunia.com/advisories/16649/ | Patch |
http://securitytracker.com/id?1014835 |
Configurations
Information
Published : 2005-09-02 16:03
Updated : 2008-09-05 13:52
NVD link : CVE-2005-2770
Mitre link : CVE-2005-2770
JSON object : View
CWE
Products Affected
wrq
- wrq_reflection_for_secure_it_windows_server