LOW · 2.6

CVE-2004-2530

Visual truncation vulnerability in Gadu-Gadu allows remote attackers to spoof the file extension on transmitted files via a filename with a large number of spaces followed by the real extension, which...

Vulnerability Description

Visual truncation vulnerability in Gadu-Gadu allows remote attackers to spoof the file extension on transmitted files via a filename with a large number of spaces followed by the real extension, which is not displayed in the dialog box.

CVSS Score

2.6

LOW

AV:N/AC:H/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
Gadu-GaduGadu-Gadu Instant MessengerAll versions

References

FAQ

What is CVE-2004-2530?

CVE-2004-2530 is a vulnerability with a CVSS score of 2.6 (LOW). Visual truncation vulnerability in Gadu-Gadu allows remote attackers to spoof the file extension on transmitted files via a filename with a large number of spaces followed by the real extension, which...

How severe is CVE-2004-2530?

CVE-2004-2530 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-2530?

Check the references section above for vendor advisories and patch information. Affected products include: Gadu-Gadu Gadu-Gadu Instant Messenger.