Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
BID:55232
Info
Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
| Bugtraq ID: | 55232 |
| Class: | Design Error |
| CVE: |
CVE-2012-4670 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 27 2012 12:00AM |
| Updated: | Aug 30 2012 01:10PM |
| Credit: | Philipp Hancke |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
Tigase XMPP Server is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
Versions prior to Tigase XMPP Server 5.0.1 are vulnerable.
Tigase XMPP Server is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
Versions prior to Tigase XMPP Server 5.0.1 are vulnerable.
Exploit / POC
Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
Currently we are not aware of any publicly available exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently we are not aware of any publicly available exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Tigase XMPP Server Dialback Protection Bypass Component Security Bypass Vulnerability
References:
References: