First published: Wed May 05 2010(Updated: )
OpenTTD before 1.0.1 accepts a company password for authentication in response to a request for the server password, which allows remote authenticated users to bypass intended access restrictions or cause a denial of service (daemon crash) by sending a company password packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Openr Opentmpfiles | =0.6.0-rc1 | |
Openr Opentmpfiles | =0.1.3 | |
Openr Opentmpfiles | =0.1.2 | |
Openr Opentmpfiles | =0.2.1 | |
Openr Opentmpfiles | =0.4.0.1 | |
Openr Opentmpfiles | =0.2.0 | |
Openr Opentmpfiles | =0.6.1-rc2 | |
Openr Opentmpfiles | =0.6.0-beta2 | |
Openr Opentmpfiles | =0.5.0-rc1 | |
Openr Opentmpfiles | =0.3.3 | |
Openr Opentmpfiles | =0.3.1 | |
Openr Opentmpfiles | =0.5.3-rc1 | |
Openr Opentmpfiles | =0.4.7 | |
Openr Opentmpfiles | =0.3.6 | |
Openr Opentmpfiles | =0.3.4 | |
Openr Opentmpfiles | =0.5.0-rc2 | |
Openr Opentmpfiles | =0.6.0 | |
Openr Opentmpfiles | =0.1.4 | |
Openr Opentmpfiles | =0.6.0-beta1 | |
Openr Opentmpfiles | =0.3.0 | |
Openr Opentmpfiles | <=1.0.0 | |
Openr Opentmpfiles | =0.5.3 | |
Openr Opentmpfiles | =0.5.0-rc3 | |
Openr Opentmpfiles | =0.5.0 | |
Openr Opentmpfiles | =0.5.3-rc3 | |
Openr Opentmpfiles | =0.4.0 | |
Openr Opentmpfiles | =0.5.2 | |
Openr Opentmpfiles | =0.6.1 | |
Openr Opentmpfiles | =0.6.0-beta4 | |
Openr Opentmpfiles | =0.5.2-rc1 | |
Openr Opentmpfiles | =0.6.0-beta3 | |
Openr Opentmpfiles | =0.6.1-rc1 | |
Openr Opentmpfiles | =0.4.5 | |
Openr Opentmpfiles | =0.5.1-rc1 | |
Openr Opentmpfiles | =0.4.6 | |
Openr Opentmpfiles | =0.6.2-rc1 | |
Openr Opentmpfiles | =0.5.3-rc2 | |
Openr Opentmpfiles | =0.3.2 | |
Openr Opentmpfiles | =0.7.4 | |
Openr Opentmpfiles | =0.1.1 | |
Openr Opentmpfiles | =0.5.0-rc4 | |
Openr Opentmpfiles | =0.4.8 | |
Openr Opentmpfiles | =0.3.7 | |
Openr Opentmpfiles | =0.5.1 | |
Openr Opentmpfiles | =0.5.1-rc2 | |
Openr Opentmpfiles | =0.5.0-rc5 | |
Openr Opentmpfiles | =0.3.5 | |
Openr Opentmpfiles | =0.3.2.1 | |
Openr Opentmpfiles | =0.6.0-beta5 | |
Openr Opentmpfiles | =0.5.1-rc3 | |
Openr Opentmpfiles | =0.6.2-rc2 | |
Openr Opentmpfiles | =0.4.8-rc1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0401 has a medium severity rating, as it can allow authenticated users to bypass access restrictions.
To fix CVE-2010-0401, upgrade OpenTTD to version 1.0.1 or later.
CVE-2010-0401 affects OpenTTD versions prior to 1.0.1, including versions 0.1.1 through 0.7.4.
CVE-2010-0401 enables a denial of service attack or unauthorized access due to the password bypass vulnerability.
CVE-2010-0401 was reported by a user through the OpenTTD bug tracking system.