Isode M-Link Server XMPP Dialback Protection Bypass Component Security Bypass Vulnerability
BID:55302
Info
Isode M-Link Server XMPP Dialback Protection Bypass Component Security Bypass Vulnerability
| Bugtraq ID: | 55302 |
| Class: | Design Error |
| CVE: |
CVE-2012-4669 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 25 2012 12:00AM |
| Updated: | Aug 25 2012 12:00AM |
| Credit: | Philipp Hancke |
| Vulnerable: |
Isode M-Link R15.1 Isode M-Link R14.6 |
| Not Vulnerable: |
Isode M-Link R15.1v10 Isode M-Link R14.6v14 |
Discussion
Isode M-Link Server XMPP Dialback Protection Bypass Component Security Bypass Vulnerability
M-Link Server is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
The following versions are vulnerable:
M-Link R14.6 and versions prior to R14.6v14
M-Link R15.1 and versions prior to R15.1v10
M-Link Server is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
The following versions are vulnerable:
M-Link R14.6 and versions prior to R14.6v14
M-Link R15.1 and versions prior to R15.1v10
References
Isode M-Link Server XMPP Dialback Protection Bypass Component Security Bypass Vulnerability
References:
References:
- M-Link Homepage (Isode)
- M-Link R14.6v14 and R15.1v10 (Isode)
- Vulnerability in XMPP Server Dialback Implementations (XMPP)