CVE Vulnerabilities

CVE-2005-2329

Published: Jul 20, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not properly restrict access to ports, which allows remote authenticated users to access the consoles of other users.

Affected Software

NameVendorStart VersionEnd Version
In_reach_lx_1000sMrv_communications3.5 (including)3.5 (including)
In_reach_lx_4000sMrv_communications3.5 (including)3.5 (including)
In_reach_lx_8000sMrv_communications3.5 (including)3.5 (including)

References