PoC Index

CVE-2008-1118

HIGH 7.5EPSS 2.9%

Timbuktu Pro 8.6.5 for Windows, and possibly 8.7 for Mac OS X, does not perform input validation before logging information fields taken from packets from a remote peer, which allows remote attackers to generate crafted log entries, and possibly avoid detection of attacks, via modified (1) computer name, (2) user name, and (3) IP address fields.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
2.94% chance of exploitation in the next 30 days, 86th percentile
Published
2008-03-14
Updated
2024-08-07

ExploitDB entries (1)

References

Related