CVE Vulnerabilities

CVE-2007-5057

Improper Authentication

Published: Sep 24, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

NetSupport Manager Client before 10.20.0004 allows remote attackers to bypass the (1) basic and (2) authentication schemes by spoofing the NetSupport Manager.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Netsupport_manager_client Netsupport 5.00 (including) 5.00 (including)
Netsupport_manager_client Netsupport 5.01 (including) 5.01 (including)
Netsupport_manager_client Netsupport 5.02 (including) 5.02 (including)
Netsupport_manager_client Netsupport 5.02_f1 (including) 5.02_f1 (including)
Netsupport_manager_client Netsupport 5.03 (including) 5.03 (including)
Netsupport_manager_client Netsupport 5.05 (including) 5.05 (including)
Netsupport_manager_client Netsupport 5.30 (including) 5.30 (including)
Netsupport_manager_client Netsupport 5.31 (including) 5.31 (including)
Netsupport_manager_client Netsupport 6.00 (including) 6.00 (including)
Netsupport_manager_client Netsupport 6.10 (including) 6.10 (including)
Netsupport_manager_client Netsupport 6.11 (including) 6.11 (including)
Netsupport_manager_client Netsupport 7.01 (including) 7.01 (including)
Netsupport_manager_client Netsupport 7.10 (including) 7.10 (including)
Netsupport_manager_client Netsupport 8.00 (including) 8.00 (including)
Netsupport_manager_client Netsupport 8.10 (including) 8.10 (including)
Netsupport_manager_client Netsupport 8.50 (including) 8.50 (including)
Netsupport_manager_client Netsupport 8.60 (including) 8.60 (including)
Netsupport_manager_client Netsupport 9.00 (including) 9.00 (including)
Netsupport_manager_client Netsupport 9.10 (including) 9.10 (including)
Netsupport_manager_client Netsupport 9.50 (including) 9.50 (including)
Netsupport_manager_client Netsupport 9.60 (including) 9.60 (including)
Netsupport_manager_client Netsupport 10.00 (including) 10.00 (including)
Netsupport_manager_client Netsupport 10.20 (including) 10.20 (including)

Potential Mitigations

References