Количество 6
Количество 6
CVE-2018-10847
prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance.
CVE-2018-10847
prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance.
CVE-2018-10847
prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authenticat ...
openSUSE-SU-2018:1632-1
Security update for prosody
openSUSE-SU-2018:1627-1
Security update for prosody
GHSA-r7gq-256h-j4mq
prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-10847 prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance. | CVSS3: 4.2 | 1% Низкий | больше 7 лет назад | |
CVE-2018-10847 prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance. | CVSS3: 4.2 | 1% Низкий | больше 7 лет назад | |
CVE-2018-10847 prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authenticat ... | CVSS3: 4.2 | 1% Низкий | больше 7 лет назад | |
openSUSE-SU-2018:1632-1 Security update for prosody | 1% Низкий | больше 7 лет назад | ||
openSUSE-SU-2018:1627-1 Security update for prosody | 1% Низкий | больше 7 лет назад | ||
GHSA-r7gq-256h-j4mq prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A and migrate their authenticated session to XMPP host B of the same Prosody instance. | CVSS3: 8.8 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу