CVE-2004-1482

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
11/07/2017

Description

The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bnc:bnc:2.2.4:*:*:*:*:*:*:*
cpe:2.3:a:bnc:bnc:2.4.6:*:*:*:*:*:*:*
cpe:2.3:a:bnc:bnc:2.4.8:*:*:*:*:*:*:*
cpe:2.3:a:bnc:bnc:2.6:*:*:*:*:*:*:*
cpe:2.3:a:bnc:bnc:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:bnc:bnc:2.8.8:*:*:*:*:*:*:*