CVE

Id
88051  
CVE No.
CVE-2016-1232  
Status
Candidate  
Description
The mod_dialback module in Prosody before 0.9.9 does not properly generate random values for the secret token for server-to-server dialback authentication, which makes it easier for attackers to spoof servers via a brute force attack.  
Phase
Assigned (20151227)  
Votes
None (candidate not yet proposed)  
Comments