Vulnerabilities > CVE-2003-1120 - Unspecified vulnerability in SSH Tectia Server 4.0.3/4.0.4

047910
CVSS 3.7 - LOW
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
high complexity
ssh

Summary

Race condition in SSH Tectia Server 4.0.3 and 4.0.4 for Unix, when the password change plugin (ssh-passwd-plugin) is enabled, allows local users to obtain the server's private key.

Vulnerable Configurations

Part Description Count
Application
Ssh
2