Sign in
CVE-2009-4831
CVE-2009-4831
Description
Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate.
Impact
CVSS v2 : 5.8 MEDIUM
Type
CWE-295
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:P/I:P/A:N
Quick links
CVE
,
NVD
,
CERT
,
Metasploit
,
Exploit-db
,
Fulldisc
,
Bugtraq
,
Microsoft
,
Red Hat
,
Debian
, GitHub
code
/
issues
,
Google
References
http://www.securityfocus.com/bid/35509
http://secunia.com/advisories/35620
https://exchange.xforce.ibmcloud.com/vulnerabilities/51400
http://www.securityfocus.com/archive/1/504573/100/0/threaded
FAQ
Terms of service
Privacy policy