Vulnerabilities > CVE-2004-2530

047910
CVSS 2.6 - LOW
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
high complexity
gadu-gadu
exploit available

Summary

Visual truncation vulnerability in Gadu-Gadu allows remote attackers to spoof the file extension on transmitted files via a filename with a large number of spaces followed by the real extension, which is not displayed in the dialog box.

Vulnerable Configurations

Part Description Count
Application
Gadu-Gadu
1

Exploit-Db

descriptionGadu-Gadu 6.0 File Download Filename Obfuscation Weakness. CVE-2004-2530. Remote exploit for windows platform
idEDB-ID:24404
last seen2016-02-02
modified2004-08-23
published2004-08-23
reporterBartosz Kwitkowski
sourcehttps://www.exploit-db.com/download/24404/
titleGadu-Gadu 6.0 File Download Filename Obfuscation Weakness