Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation38 reference(s) from NVD