VYPR

Hci Storage Node

Sign in to watch

by NetApp

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2020-8284Low0.243.70.00Dec 14, 2020A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed, for example doing port scanning and service banner extractions.
CVE-2007-27680.000.00May 21, 2007OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-time passwords (OTP), a similar issue to CVE-2007-2243.