CVE Vulnerabilities

CVE-2004-1482

Published: Dec 31, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.

Affected Software

Name Vendor Start Version End Version
Bnc Bnc 2.2.4 (including) 2.2.4 (including)
Bnc Bnc 2.4.6 (including) 2.4.6 (including)
Bnc Bnc 2.4.8 (including) 2.4.8 (including)
Bnc Bnc 2.6 (including) 2.6 (including)
Bnc Bnc 2.6.2 (including) 2.6.2 (including)
Bnc Bnc 2.8.8 (including) 2.8.8 (including)

References