CVE

Id
9610  
CVE No.
CVE-2004-1182  
Status
Candidate  
Description
hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate and bypass intended access restrictions via a crafted (1) username or (2) hostname that satisfies a regular expression that is matched against a hosts.hfaxd entry without a password.  
Phase
Assigned (20041213)  
Votes
None (candidate not yet proposed)  
Comments