CVE-2011-0437
Publication date 7 March 2011
Last updated 24 July 2024
Ubuntu priority
shared/inc/sql/ssh.php in the SSH accounts management implementation in Domain Technologie Control (DTC) before 0.32.9 allows remote authenticated users to delete arbitrary accounts via the edssh_account parameter in a deletesshaccount Delete action.
Status
Package | Ubuntu Release | Status |
---|---|---|
dtc | 10.10 maverick |
Fixed 0.30.18-1ubuntu1
|
10.04 LTS lucid |
Fixed 0.30.10-1ubuntu1
|
|
9.10 karmic |
Fixed 0.29.17-1+lenny1build0.9.10.1
|
|
8.04 LTS hardy |
Fixed 0.25.3-2ubuntu1.1
|
|
6.06 LTS dapper | Not in release |