CVE-2014-7271

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
08/03/2018
Last modified:
27/03/2018

Description

Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to log in as user "sddm" without authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sddm_project:sddm:*:*:*:*:*:*:*:* 0.10.0 (excluding)
cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*