Описание
Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) before 1.6.4 allows remote attackers to obtain attributes of arbitrary accounts, including the password hash, via certain statsreq packets.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.6.3 (включая)
Одно из
cpe:2.3:a:pvpgn:pvpgn:*:*:*:*:*:*:*:*
cpe:2.3:a:pvpgn:pvpgn:1.6.0:*:*:*:*:*:*:*
cpe:2.3:a:pvpgn:pvpgn:1.6.1:*:*:*:*:*:*:*
cpe:2.3:a:pvpgn:pvpgn:1.6.2:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00551
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
debian
около 21 года назад
Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) ...
github
почти 4 года назад
Unspecified vulnerability in Player vs. Player Gaming Network (PvPGN) before 1.6.4 allows remote attackers to obtain attributes of arbitrary accounts, including the password hash, via certain statsreq packets.
EPSS
Процентиль: 67%
0.00551
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo