PT-2018-2203 · Tim · Tim 1531 Irc
Publicado
2018-12-11
·
Atualizado
2019-10-09
·
CVE-2018-13816
CVSS v3.1
10
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TIM 1531 IRC versions prior to V2.0
Description
A vulnerability has been identified due to the absence of proper authentication on port 102/tcp. Successful exploitation requires an attacker to send packets to this port, with no user interaction or privileges needed. The issue allows an attacker to perform arbitrary administrative operations. At the time of advisory publication, no public exploitation of this vulnerability was known.
Recommendations
For versions prior to V2.0, update to version V2.0 or later to resolve the issue. As a temporary workaround, consider restricting access to port 102/tcp to minimize the risk of exploitation.
Correção
Missing Authentication
Improper Access Control
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Tim 1531 Irc