Yeemp 0.9.9 and earlier does not properly encrypt inbound files, which allows remote attackers to spoof the identity of the sender.
Link | Tags |
---|---|
http://deekoo.net/technocracy/yeemp/#advisory | patch |
http://securitytracker.com/id?1011586 | vdb entry patch |
http://deekoo.net/technocracy/yeemp/changes.html | |
http://www.osvdb.org/10671 | vdb entry patch |
http://secunia.com/advisories/12795 | third party advisory patch vendor advisory |
http://www.securityfocus.com/bid/11353 | vdb entry patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17692 | vdb entry |