Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0668

6 documents6 sources
Severity
5.0MEDIUM
EPSS
6.5%
top 8.89%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJul 27
Latest updateApr 30

Description

pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDredhat/linux6.0, 6.1, 6.2+2
NVDconectiva/linux6 versions+5
NVDmichael_k._johnson/pam_console0.66, 0.72_unpatched+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-h362-xvf2-9x75: pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has2022-04-30
CVEList
CVE-2000-0668: pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has2000-10-13

💥Exploits & PoCs

1
Exploit-DB
Conectiva 4.x/5.x / RedHat 6.x - pam_console Remote User2000-07-27

📋Vendor Advisories

1
Red Hat
security flaw2000-07-21

💬Community

1
Bugzilla
CVE-2000-0668 security flaw2018-08-16
CVE-2000-0668 (MEDIUM CVSS 5) | pam_console PAM module in Linux sys | cvebase.io