CVE-2020-13881
In support.c in pam_tacplus 1.3.8 through 1.5.1, the TACACS+ shared secret gets logged via syslog if the DEBUG loglevel
In support.c in pam_tacplus 1.3.8 through 1.5.1, the TACACS+ shared secret gets logged via syslog if the DEBUG loglevel and journald are used.
HIGH · CVSS 7.5
EPSS 0.01239
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0