Loading
Argument injection vulnerability in the telnet daemon (in.telnetd) in Solaris 10 and 11 (SunOS 5.10 and 5.11) misinterprets certain client "-f" sequences as valid requests for the login program to skip authentication, which allows remote attackers to log into certain accounts, as demonstrated by the bin account.
Use CWE-88, Oracle vendor hub and Solaris product page to widen CVE-2007-0882 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-36038, CVE-2025-36128 and CVE-2026-34281 for nearby disclosures in the same product family.