Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49xx-hhcj-4g3j

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.

Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.

EPSS

Процентиль: 80%
0.01447
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.9
nvd
почти 19 лет назад

Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.

EPSS

Процентиль: 80%
0.01447
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-200