Dark Age of Camelot before 1.68 live patch does not sign the RSA public key, which could allow remote malicious servers to gain sensitive information via a man-in-the-middle attack.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/9960 | exploit vdb entry vendor advisory |
http://capnbry.net/daoc/advisory20040323/ | exploit vendor advisory |
http://lists.netsys.com/pipermail/full-disclosure/2004-March/019212.html | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15597 | vdb entry |
http://marc.info/?l=bugtraq&m=108016932816707&w=2 | mailing list |