Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-0833
Description:The pam_lsass library in Likewise Open 5.4 and CIFS 5.4 before build 8046, and 6.0 before build 8234, as used in HP StorageWorks X9000 Network Storage Systems and possibly other products, uses "SetPassword logic" when running as part of a root service, which allows remote attackers to bypass authentication for a Likewise Security Authority (lsassd) account whose password is marked as expired.
Test IDs: 1.3.6.1.4.1.25623.1.0.840472   1.3.6.1.4.1.25623.1.0.68194  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-0833
Bugtraq: 20100726 [LWSA-2010-001] Likewise Open 5.4 & 6.0 (Google Search)
http://www.securityfocus.com/archive/1/512643/100/0/threaded
HPdes Security Advisory: HPSBST02630
http://marc.info/?l=bugtraq&m=129719002806096&w=2
HPdes Security Advisory: SSRT1000385
http://marc.info/?l=bugtraq&m=129719002806096&w=2
http://www.securitytracker.com/id?1025031
http://secunia.com/advisories/40725
http://secunia.com/advisories/40736
http://secunia.com/advisories/43244
http://www.ubuntu.com/usn/USN-964-1
http://www.vupen.com/english/advisories/2010/1913
http://www.vupen.com/english/advisories/2011/0312




© 1998-2025 E-Soft Inc. All rights reserved.