CVE-2008-7255

login_screen.tcl in aMSN (aka Alvaro's Messenger) before 0.97.1 saves a password after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:amsn:amsn:*:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.83:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.90:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.91:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.92:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.93:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.94:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.95:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.96:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-04-20 16:30

Updated : 2024-02-28 11:41


NVD link : CVE-2008-7255

Mitre link : CVE-2008-7255

CVE.ORG link : CVE-2008-7255


JSON object : View

Products Affected

amsn

  • amsn
CWE
CWE-255

Credentials Management Errors