PT-2003-2420 · Netbus · Netbus
Skyz
·
Publicado
2003-12-31
·
Atualizado
2017-07-29
·
CVE-2003-1475
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Netbus versions 1.5 through 1.7
Description
The issue allows more than one client to connect at the same time, but only the first connection is prompted for authentication. This enables remote attackers to gain access without proper authentication.
Recommendations
For Netbus versions 1.5 through 1.7, consider restricting multiple client connections to prevent unauthorized access until a proper fix is available. As a temporary workaround, limit the number of simultaneous connections to one to minimize the risk of exploitation.
Exploit
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Netbus