CVE Vulnerabilities

CVE-2007-5057

Improper Authentication

Published: Sep 24, 2007 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

NetSupport Manager Client before 10.20.0004 allows remote attackers to bypass the (1) basic and (2) authentication schemes by spoofing the NetSupport Manager.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Netsupport_manager_client Netsupport 5.00 5.00
Netsupport_manager_client Netsupport 5.02 5.02
Netsupport_manager_client Netsupport 8.10 8.10
Netsupport_manager_client Netsupport 5.02_f1 5.02_f1
Netsupport_manager_client Netsupport 6.10 6.10
Netsupport_manager_client Netsupport 5.03 5.03
Netsupport_manager_client Netsupport 7.01 7.01
Netsupport_manager_client Netsupport 5.30 5.30
Netsupport_manager_client Netsupport 9.10 9.10
Netsupport_manager_client Netsupport 5.01 5.01
Netsupport_manager_client Netsupport 6.00 6.00
Netsupport_manager_client Netsupport 8.00 8.00
Netsupport_manager_client Netsupport 8.50 8.50
Netsupport_manager_client Netsupport 10.00 10.00
Netsupport_manager_client Netsupport 10.20 10.20
Netsupport_manager_client Netsupport 5.05 5.05
Netsupport_manager_client Netsupport 9.60 9.60
Netsupport_manager_client Netsupport 5.31 5.31
Netsupport_manager_client Netsupport 9.00 9.00
Netsupport_manager_client Netsupport 8.60 8.60
Netsupport_manager_client Netsupport 7.10 7.10
Netsupport_manager_client Netsupport 9.50 9.50
Netsupport_manager_client Netsupport 6.11 6.11

Potential Mitigations

References