CVE-1999-1289
Published Nov 11, 1998
Last updated 7 years ago
Overview
- Description
- ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of the public address (e.g. through NAT), which provides remote attackers with potentially sensitive information about the client or the internal network configuration.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mirabilis:icq:98_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD1BC08E-A587-421D-9B79-1ED40AD54699" } ], "operator": "OR" } ] } ]