299,455
Total vulnerabilities in the database
It was found that libpam4j up to and including 1.8 did not properly validate user accounts when authenticating. A user with a valid password for a disabled account would be able to bypass security restrictions and possibly access sensitive information.
| Software | From | Fixed in |
|---|---|---|
| libpam4j_project / libpam4j | - | 1.8.x |
| redhat / enterprise_linux | 6.0 | 6.0.x |
| debian / debian_linux | 8.0 | 8.0.x |
| debian / debian_linux | 7.0 | 7.0.x |
| debian / debian_linux | 9.0 | 9.0.x |
org.kohsuke / libpam4j
|
- | 1.10 |