CVE-2004-2530

Visual truncation vulnerability in Gadu-Gadu allows remote attackers to spoof the file extension on transmitted files via a filename with a large number of spaces followed by the real extension, which is not displayed in the dialog box.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gadu-gadu:gadu-gadu_instant_messenger:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:53

Type Values Removed Values Added
References () http://seclists.org/lists/vuln-dev/2004/Aug/0007.html - Exploit () http://seclists.org/lists/vuln-dev/2004/Aug/0007.html - Exploit
References () http://securitytracker.com/id?1011037 - Exploit () http://securitytracker.com/id?1011037 - Exploit
References () http://www.osvdb.org/9162 - Exploit () http://www.osvdb.org/9162 - Exploit
References () http://www.securityfocus.com/bid/11017 - Exploit () http://www.securityfocus.com/bid/11017 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/17105 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/17105 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:53


NVD link : CVE-2004-2530

Mitre link : CVE-2004-2530

CVE.ORG link : CVE-2004-2530


JSON object : View

Products Affected

gadu-gadu

  • gadu-gadu_instant_messenger