CVE-2013-1841

Description

Net-Server, when the reverse-lookups option is enabled, does not check if the hostname resolves to the source IP address, which might allow remote attackers to bypass ACL restrictions via the hostname parameter.

Risk Information

Base Score
9.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
0.475

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2023:0746-1(Basesystem Module 15-SP4 ) perl-Net-Server-2.009-150000.3.3.1.noarch.rpmLinux
SUSE-SU-2023:0759-1(SUSE Linux Enterprise Server 12 SP5 ) perl-Net-Server-2.007-5.3.1.noarch.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234