CVE-2011-2187 Vulnerability Details

  /     /     /  

CVE-2011-2187 Metadata Quick Info

CVE Published: 27/11/2019 | CVE Updated: 06/08/2024 | CVE Year: 2011
Source: redhat | Vendor: xscreensaver | Product: xscreensaver
Status : PUBLISHED

CVE-2011-2187 Description

xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: exits when activated (DPMSForceLevel)
Source: xscreensaver

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).