Vulnerability Description
Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the identity check for an authorized application, then call arbitrary Skype API functions by modifying or replacing that application.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Skype Technologies | Skype | 1.2.0.0 |
References
- http://www.skype.com/security/ssa-2005-01.htmlPatchVendor Advisory
- http://www.skype.com/security/ssa-2005-01.htmlPatchVendor Advisory
FAQ
What is CVE-2005-1407?
CVE-2005-1407 is a vulnerability with a CVSS score of 4.6 (MEDIUM). Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the identity check for an authorized application, then call arbitrary Skype API functions by modifying or replacing that application.
How severe is CVE-2005-1407?
CVE-2005-1407 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1407?
Check the references section above for vendor advisories and patch information. Affected products include: Skype Technologies Skype.