CVE Vulnerabilities

CVE-2004-1482

Published: Dec 31, 2004 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.

Affected Software

Name Vendor Start Version End Version
Bnc Bnc 2.2.4 (including) 2.2.4 (including)
Bnc Bnc 2.4.6 (including) 2.4.6 (including)
Bnc Bnc 2.4.8 (including) 2.4.8 (including)
Bnc Bnc 2.6 (including) 2.6 (including)
Bnc Bnc 2.6.2 (including) 2.6.2 (including)
Bnc Bnc 2.8.8 (including) 2.8.8 (including)

References