7.5
CVE-2004-2079
- EPSS 2.1%
- Veröffentlicht 09.02.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:08:57
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Red-M Red-Alert 2.7.5 with software 3.1 build 24 binds authentication to IP addresses, which allows remote attackers to bypass authentication by connecting from the same IP address as an active authenticated user.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.1% | 0.793 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://genhex.org/releases/031003.txt
http://marc.info/?l=full-disclosure&m=107635119005407&w=2
http://securitytracker.com/id?1009001
http://www.securiteam.com/securitynews/5SP0C0KC0A.html
http://www.securityfocus.com/archive/1/353211
http://www.securityfocus.com/bid/9618
http://www.osvdb.org/3952
https://exchange.xforce.ibmcloud.com/vulnerabilities/15088