Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
s2s/out.c in jabberd2 2.2.16 and earlier does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Authorization Response.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
jabberd XMPP Server Dialback Protection组件安全绕过漏洞
Vulnerability Description
jabberd是一款基于XMMP(一种以XML为基础的开放式实时通信协议)的即时聊天服务器。 jabberd2 2.2.16版本和早期版本中的s2s/out.c中存在漏洞,该漏洞源于未验证XMPP Server Dialback响应的请求。远程XMPP服务器通过(1)验证响应或(2)身份验证响应欺骗域。
CVSS Information
N/A
Vulnerability Type
N/A