Vulnerabilities > Google > Authenticator > 0.86

DATE CVE VULNERABILITY TITLE RISK
2013-04-24 CVE-2012-6140 Information Exposure vulnerability in Google Authenticator 0.86/0.87/0.91
pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.
local
google CWE-200
1.9