CVE
- Id
- 93963
- CVE No.
- CVE-2016-7143
- Status
- Candidate
- Description
- The m_authenticate function in modules/m_sasl.c in Charybdis before 3.5.3 allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted AUTHENTICATE parameter.
- Phase
- Assigned (20160905)
- Votes
- None (candidate not yet proposed)
- Comments