PT-2003-2420 · Netbus · Netbus
Skyz
·
Published
2003-12-31
·
Updated
2017-07-29
·
CVE-2003-1475
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Netbus versions 1.5 through 1.7
Description
The issue allows more than one client to connect at the same time, but only the first connection is prompted for authentication. This enables remote attackers to gain access without proper authentication.
Recommendations
For Netbus versions 1.5 through 1.7, consider restricting multiple client connections to prevent unauthorized access until a proper fix is available. As a temporary workaround, limit the number of simultaneous connections to one to minimize the risk of exploitation.
Exploit
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Netbus