CVE Vulnerabilities

CVE-2004-1482

Published: Dec 31, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.

Affected Software

NameVendorStart VersionEnd Version
BncBnc2.2.4 (including)2.2.4 (including)
BncBnc2.4.6 (including)2.4.6 (including)
BncBnc2.4.8 (including)2.4.8 (including)
BncBnc2.6 (including)2.6 (including)
BncBnc2.6.2 (including)2.6.2 (including)
BncBnc2.8.8 (including)2.8.8 (including)

References