Vulnerability Description
Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Proxytunnel | Proxytunnel | 1.0.6 |
References
- http://secunia.com/advisories/12685/PatchVendor Advisory
- http://securitytracker.com/id?1011486Patch
- http://sourceforge.net/project/shownotes.php?release_id=271699Patch
- http://www.securityfocus.com/bid/11299Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17566
- http://secunia.com/advisories/12685/PatchVendor Advisory
- http://securitytracker.com/id?1011486Patch
- http://sourceforge.net/project/shownotes.php?release_id=271699Patch
- http://www.securityfocus.com/bid/11299Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17566
FAQ
What is CVE-2004-2440?
CVE-2004-2440 is a vulnerability with a CVSS score of 2.1 (LOW). Unspecified vulnerability in cmdline.c in proxytunnel 1.1.3 and earlier allows local users to obtain proxy credentials (username or password) of other users.
How severe is CVE-2004-2440?
CVE-2004-2440 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-2440?
Check the references section above for vendor advisories and patch information. Affected products include: Proxytunnel Proxytunnel.