CVE-2005-2403

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/07/2005
Last modified:
03/04/2025

Description

The login protocol in RealChat 3.5.1b does not use authentication, which allows remote attackers to log on as other users by sniffing the beginning of a chat session and replaying it via a modified username.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:realchat:realchat:3.5.1b:*:*:*:*:*:*:*