FreeBSD rmuser Password Hash...

- AV AC AU C I A
发布: 2001-09-04
修订: 2025-04-13

FreeBSD ships with a perl script called 'rmuser'. It can be used by administrators to completely remove users from a system. The rmuser script temporarily creates a world readable copy of 'master.passwd'. If an attacker can anticipate the use of rmuser by an administrator, it may be possible to obtain the contents of 'master.passwd'. Exploitation of this vulnerability is extremely time-dependent.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息