Microsoft Windows Live Messenger Client 8.5.1 and previous versions, when MSN Protocol Version 15 (MSNP15) is used over a NAT session, allows remote malicious users to discover intranet IP addresses and port numbers by reading the (1) IPv4InternalAddrsAndPorts, (2) IPv4Internal-Addrs, and (3) IPv4Internal-Port header fields.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft windows live messenger 8.1 |
||
microsoft windows live messenger |
||
microsoft windows live messenger 8.0 |
||
microsoft windows live messenger 8.5 |