CVE-2008-7255

login_screen.tcl in aMSN (aka Alvaro's Messenger) before 0.97.1 saves a password after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation.
Configurations

Configuration 1

cpe:2.3:a:amsn:amsn:0.91:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:*:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.92:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.96:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.94:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.83:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.90:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.95:*:*:*:*:*:*:*
cpe:2.3:a:amsn:amsn:0.93:*:*:*:*:*:*:*

Information

Published : 2010-04-20 04:30

Updated : 2010-06-03 04:00


NVD link : CVE-2008-7255

Mitre link : CVE-2008-7255

Products Affected
CWE