Directory Traversal Vulnerability in Pidgin's MXIT Protocol
CVE-2016-4323

3.7LOW

Key Information:

Vendor

Pidgin

Status
Vendor
CVE Published:
6 January 2017

What is CVE-2016-4323?

A directory traversal vulnerability exists in the MXIT protocol handling within the Pidgin software. This issue arises when specially crafted MXIT data is sent from a server, which can lead to unauthorized file overwrites. Attackers leveraging this vulnerability can manipulate network traffic to provide invalid filenames intended for splash images. Consequently, this can compromise the integrity of the affected files on the user's system.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Pidgin 2.10.11

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.