CVE-2007-6430 (Open Source, Asterisk Business Edition) |
|
| BugsAlert Home > CVE-2007-6430 (Open Source, Asterisk Business Edition) | |
|
Asterisk Open Source 1.2.x before 1.2.26 and 1.4.x before 1.4.16, and Business Edition B.x.x before B.2.3.6 and C.x.x before C.1.0-beta8, when using database-based registrations ("realtime") and host-based authentication, does not check the IP address when the username is correct and there is no password, which allows remote attackers to bypass authentication using a valid username. Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6430 Learn more about CVE-2007-6430 (Open Source, Asterisk Business Edition) |
|
| Tags: cve-2007-6430 open source asterisk business edition | |
Related Items |
|
|
ZoneAlarm Internet Security Suite "multiscan.exe" Buffer Overflow
|
|
|
Debian update for gnutls13
|
|
|
CVE-2007-6192 (NetScaler)
|
|
|
CVE-2008-0632 (LightBlog)
|
|
|
HTML_IFRAME.ZE
|
|
|
Liferay Portal "emailAddress" Parameter Cross Site Scripting Vulnerability
|
|
|
You Better Watch Out, Xmas Web Threats Come to Town
|
|