CVE-2005-2403
N/A
N/A
Summary
The login protocol in RealChat 3.5.1b does not use authentication, which allows remote attackers to log on as other users by sniffing the beginning of a chat session and replaying it via a modified username.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/14358
- http://seclists.org/lists/bugtraq/2005/Jul/0403.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21497
- http://securitytracker.com/id?1014562
References
- http://www.securityfocus.com/bid/14358
- http://seclists.org/lists/bugtraq/2005/Jul/0403.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/21497
- http://securitytracker.com/id?1014562
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.