CVE-2005-2962 describes a vulnerability in ntlmaps versions prior to 0.9.9 where the post-installation script incorrectly sets world-readable permissions for its configuration file. This allows local users to access sensitive information, specifically usernames and passwords, stored within the file. With a CVSS score of 2.1 (AV:L/AC:L/Au:N/C:P/I:N/A:N), this is a low-severity vulnerability requiring local access and no authentication to compromise confidentiality. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.9.9CPE matchmatch criteria | cpe:2.3:a:ntlmaps:ntlmaps:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.