Vulnerabilities > Nefarious2 Project

DATE CVE VULNERABILITY TITLE RISK
2017-03-07 CVE-2016-7145 Improper Authentication vulnerability in Nefarious2 Project Nefarious2 2.0
The m_authenticate function in ircd/m_authenticate.c in nefarious2 allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted AUTHENTICATE parameter.
network
low complexity
nefarious2-project CWE-287
critical
9.8