![]() | |
| |||||||
| Home | Register | Projects | Blogs | FAQ | Calendar | Search | Today's Posts | Mark Forums Read | Free Directory | Free DNSReport | Tags |
| Notices |
| Advisories Discuss about all newly security flaws classed by CVE entries and reviewed by security experts |
CVE-2007-6430 (Open Source, Asterisk Business Edition)This is a discussion on "CVE-2007-6430 (Open Source, Asterisk Business Edition)" within the Advisories part of the Computer Security: Discussions section; Asterisk Open Source 1.2.x before 1.2.26 and 1.4.x before 1.4.16, and Business Edition B.x.x before B.2.3.6 and C.x.x before C.1.0-beta8, when using ... |
![]() |
| | LinkBack (1) | Thread Tools | Display Modes |
| |||
| Asterisk Open Source 1.2.x before 1.2.26 and 1.4.x before 1.4.16, and Business Edition B.x.x before B.2.3.6 and C.x.x before C.1.0-beta8, when using database-based registrations ("realtime") and host-based authentication, does not check the IP address when the username is correct and there is no password, which allows remote attackers to bypass authentication using a valid username. More... |
| Sponsor | ||
| ||
| |
![]() |
| | |
| asterisk, business, cve20076430, edition, open, source | |
LinkBacks (?)
LinkBack to this Thread: http://heapoverflow.com/f0rums/advisories/2520-cve-2007-6430-open-source-asterisk-business-edition.html | ||||
| Posted By | For | Type | Date | |
| business - Members and Communities tagged with business - Zoints | This thread | Refback | 25-01-08 17:27 | |
| Thread Tools | |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| CVE-2008-0095 (Open Source, Asterisk Business Edition, Asterisk Appliance Developer Kit, Asteris...) | Heap | Advisories | 0 | 08-01-08 17:46 |
| CVE-2007-6437 (syslog-ng Open Source Edition, syslog-ng Premium Edition) | Heap | Advisories | 0 | 21-12-07 02:44 |