CVE-2004-2612: High severity BNC BNC vulnerability
Published Dec 31, 2004
·Updated
BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users.
Affected Software
1 affected component
BNC BNC=2.9.0
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Dec 4, 2005
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2612?
CVE-2004-2612 is classified as a medium severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2004-2612?
To fix CVE-2004-2612, upgrade BNC from version 2.9.0 to a later version where this vulnerability is patched.
3
What systems are affected by CVE-2004-2612?
CVE-2004-2612 specifically affects BNC version 2.9.0.
4
Can CVE-2004-2612 be exploited remotely?
Yes, CVE-2004-2612 can be exploited by remote attackers to gain unauthorized access.
5
What functionalities are affected by CVE-2004-2612?
CVE-2004-2612 allows unauthorized users to access functionalities intended for authorized users.