Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-1182

Опубликовано: 31 дек. 2004
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate and bypass intended access restrictions via a crafted (1) username or (2) hostname that satisfies a regular expression that is matched against a hosts.hfaxd entry without a password.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hylafax:hylafax:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.2:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.3:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.5:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.6:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.7:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1.8:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1_beta1:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1_beta2:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.1_beta3:*:*:*:*:*:*:*
cpe:2.3:a:hylafax:hylafax:4.2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00552
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 21 год назад

hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate and bypass intended access restrictions via a crafted (1) username or (2) hostname that satisfies a regular expression that is matched against a hosts.hfaxd entry without a password.

debian
почти 21 год назад

hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfax ...

github
больше 3 лет назад

hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate and bypass intended access restrictions via a crafted (1) username or (2) hostname that satisfies a regular expression that is matched against a hosts.hfaxd entry without a password.

EPSS

Процентиль: 67%
0.00552
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other