Slashcode 2.0 creates new accounts with an 8-character random password, which could allow local users to obtain session IDs from cookies and gain unauthorized access via a brute force attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Slashcode | Open_source_development_network | 2.0 (including) | 2.0 (including) |
Slash | Ubuntu | dapper | * |
Slash | Ubuntu | edgy | * |
Slash | Ubuntu | feisty | * |