PT-2012-5536 · M Link · M-Link
Publicado
2012-08-25
·
Atualizado
2012-08-27
·
CVE-2012-4669
CVSS v2.0
5.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
M-Link versions prior to R14.6v14
M-Link versions prior to R15.1v10
Description
The issue allows remote XMPP servers to spoof domains via responses for domains that were not asserted, due to a lack of verification that a request was made for an XMPP Server Dialback response.
Recommendations
For versions prior to R14.6v14, update to R14.6v14 or later.
For versions prior to R15.1v10, update to R15.1v10 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
M-Link