Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-2403

EPSS 0.67% · P72
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-2403

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The login protocol in RealChat 3.5.1b does not use authentication, which allows remote attackers to log on as other users by sniffing the beginning of a chat session and replaying it via a modified username.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
RealChat login 非授权用户登陆漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
RealChat是一个web在线聊天系统。 RealChat 3.5.1b中的登录协议未使用认证,使攻击者可以系统其他用户的身份登陆。远程攻击者通过嗅探聊天会话的开始部分,并修改用户名,重放会话,从而以其他用户的身份登录系统。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-2403

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-2403

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-07-27 · 22 CVEs total

CVE-2005-2393CuteNews login.php/search.php 跨站脚本漏洞
CVE-2005-2404Sendcard Sendcard.PHP SQL注入漏洞
CVE-2005-2402PHPSiteSearch Search.PHP 跨站脚本漏洞
CVE-2005-2401PHP-Fusion CSS BBcode颜色标签 跨站脚本漏洞
CVE-2005-2400PHPFinance Inc.login.PHP 绕过登陆认证漏洞
CVE-2005-2399PHP Surveyor多个SQL注入漏洞
CVE-2005-2398PHP Surveyor多个SQL注入漏洞
CVE-2005-2397phpBook guestbook.php 跨站脚本漏洞
CVE-2005-2396MediaWiki page move template 跨站脚本漏洞
CVE-2005-2395Mozilla Firefox 认证机制漏洞。
CVE-2005-2394CuteNews show_news.php 路径泄露漏洞
CVE-2005-2335Fetchmail UIDL 缓冲区溢出漏洞
CVE-2005-2392CMSimple index.php 跨站脚本漏洞
CVE-2005-23913Com OfficeConnect Wireless 11g Access Point 信息泄露漏洞
CVE-2005-2390开源软件 ProFTPD shutdown/mod_sql 格式化字符串漏洞
CVE-2005-2389Symantec VERITAS NetBackup NDMP server 拒绝服务漏洞
CVE-2005-2388Microsoft Windows未明USB驱动溢出漏洞
CVE-2005-2387GoodTech SMTP Server RCPT TO命令 多个堆栈溢出漏洞
CVE-2005-2386CartWIZ viewCart.asp 跨站脚本漏洞
CVE-2005-2385ALWIL avast! Antivirus UNACEV2.DLL 缓冲区溢出漏洞

Showing top 20 of 22 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-2403

No comments yet


Leave a comment