7.5

CVE-2008-3920

Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bitlbee ≫ Bitlbee Version <= 1.2.1
Bitlbee ≫ Bitlbee Version 0.71
Bitlbee ≫ Bitlbee Version 0.72
Bitlbee ≫ Bitlbee Version 0.73
Bitlbee ≫ Bitlbee Version 0.74
Bitlbee ≫ Bitlbee Version 0.74 Update a
Bitlbee ≫ Bitlbee Version 0.80
Bitlbee ≫ Bitlbee Version 0.81
Bitlbee ≫ Bitlbee Version 0.81 Update a
Bitlbee ≫ Bitlbee Version 0.82
Bitlbee ≫ Bitlbee Version 0.83
Bitlbee ≫ Bitlbee Version 0.84
Bitlbee ≫ Bitlbee Version 0.85
Bitlbee ≫ Bitlbee Version 0.85 Update a
Bitlbee ≫ Bitlbee Version 0.90
Bitlbee ≫ Bitlbee Version 0.90 Update a
Bitlbee ≫ Bitlbee Version 0.91
Bitlbee ≫ Bitlbee Version 0.92
Bitlbee ≫ Bitlbee Version 0.93
Bitlbee ≫ Bitlbee Version 0.93 Update a
Bitlbee ≫ Bitlbee Version 0.99
Bitlbee ≫ Bitlbee Version 1.0
Bitlbee ≫ Bitlbee Version 1.0.1
Bitlbee ≫ Bitlbee Version 1.0.2
Bitlbee ≫ Bitlbee Version 1.0.3
Bitlbee ≫ Bitlbee Version 1.0.4
Bitlbee ≫ Bitlbee Version 1.1 Update dev
Bitlbee ≫ Bitlbee Version 1.1.1 Update dev
Bitlbee ≫ Bitlbee Version 1.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.11% 0.794
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://bitlbee.org/main.php/changelog.html
http://secunia.com/advisories/31633
Vendor Advisory
http://secunia.com/advisories/31690
http://secunia.com/advisories/31991
http://security.gentoo.org/glsa/glsa-200809-14.xml
http://www.securityfocus.com/bid/30858
https://bugzilla.redhat.com/show_bug.cgi?id=460355
https://exchange.xforce.ibmcloud.com/vulnerabilities/44699
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00045.html
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00335.html
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00692.html