PT-2014-2158 · Libnet6 · Libnet6
Published
2014-02-10
·
Updated
2023-02-13
·
CVE-2011-4091
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
libnet6 versions prior to 1.3.14
Description
The issue allows remote attackers to obtain sensitive information, such as server-usage patterns by a particular user and color preferences, due to a lack of authentication before checking the user name in the libobby server.
Recommendations
For versions prior to 1.3.14, update to version 1.3.14 or later to resolve the issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Libnet6