PT-2007-6699 · Mldonkey · Mldonkey

Published

2007-10-30

·

Updated

2008-09-05

·

CVE-2007-5714

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MLDonkey versions prior to 2.9.0-r3
Description The issue allows remote attackers to obtain login access and execute arbitrary code due to a p2p user account with an empty default password and valid login shell.
Recommendations For versions prior to 2.9.0-r3, update to version 2.9.0-r3 or later to resolve the issue.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5714

Affected Products

Mldonkey