Vulnerabilities > Eternal Terminal Project > Eternal Terminal > 3.1.0

DATE CVE VULNERABILITY TITLE RISK
2022-08-16 CVE-2022-24949 Classic Buffer Overflow vulnerability in Eternal Terminal Project Eternal Terminal
A privilege escalation to root exists in Eternal Terminal prior to version 6.2.0.
network
high complexity
eternal-terminal-project CWE-120
7.5
2022-08-16 CVE-2022-24950 Race Condition vulnerability in Eternal Terminal Project Eternal Terminal
A race condition exists in Eternal Terminal prior to version 6.2.0 that allows an authenticated attacker to hijack other users' SSH authorization socket, enabling the attacker to login to other systems as the targeted users.
network
high complexity
eternal-terminal-project CWE-362
7.5
2022-08-16 CVE-2022-24951 Race Condition vulnerability in Eternal Terminal Project Eternal Terminal
A race condition exists in Eternal Terminal prior to version 6.2.0 which allows a local attacker to hijack Eternal Terminal's IPC socket, enabling access to Eternal Terminal clients which attempt to connect in the future.
local
high complexity
eternal-terminal-project CWE-362
7.0
2022-08-16 CVE-2022-24952 Improper Input Validation vulnerability in Eternal Terminal Project Eternal Terminal
Several denial of service vulnerabilities exist in Eternal Terminal prior to version 6.2.0, including a DoS triggered remotely by an invalid sequence number and a local bug triggered by invalid input sent directly to the IPC socket.
network
low complexity
eternal-terminal-project CWE-20
6.5