Vulnerabilities > Andrew Morgan

DATE CVE VULNERABILITY TITLE RISK
2007-01-23 CVE-2007-0003 Authentication Bypass vulnerability in Andrew Morgan Linux PAM 0.99.7.0
pam_unix.so in Linux-PAM 0.99.7.0 allows context-dependent attackers to log into accounts whose password hash, as stored in /etc/passwd or /etc/shadow, has only two characters.
local
low complexity
andrew-morgan
7.2
2003-07-24 CVE-2003-0388 Unspecified vulnerability in Andrew Morgan Linux PAM
pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name.
local
low complexity
andrew-morgan
4.6