PT-2012-5536 · M Link · M-Link

Publicado

2012-08-25

·

Atualizado

2012-08-27

·

CVE-2012-4669

CVSS v2.0

5.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions M-Link versions prior to R14.6v14 M-Link versions prior to R15.1v10
Description The issue allows remote XMPP servers to spoof domains via responses for domains that were not asserted, due to a lack of verification that a request was made for an XMPP Server Dialback response.
Recommendations For versions prior to R14.6v14, update to R14.6v14 or later. For versions prior to R15.1v10, update to R15.1v10 or later.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-4669

Produtos afetados

M-Link