6.5
CVSSv2

CVE-2010-0401

Published: 05/05/2010 Updated: 11/05/2010
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

OpenTTD prior to 1.0.1 accepts a company password for authentication in response to a request for the server password, which allows remote authenticated users to bypass intended access restrictions or cause a denial of service (daemon crash) by sending a company password packet.

Vulnerable Product Search on Vulmon Subscribe to Product

openttd openttd 0.4.8

openttd openttd 0.4.7

openttd openttd 0.6.0

openttd openttd 0.5.2

openttd openttd 0.7.4

openttd openttd 0.5.3

openttd openttd 0.3.4

openttd openttd 0.3.6

openttd openttd 0.5.0

openttd openttd 0.4.6

openttd openttd 0.4.5

openttd openttd 0.4.0.1

openttd openttd 0.1.2

openttd openttd 0.1.1

openttd openttd 0.1.4

openttd openttd 0.1.3

openttd openttd 0.6.1

openttd openttd 0.6.2

openttd openttd 0.3.1

openttd openttd 0.3.0

openttd openttd 0.3.2.1

openttd openttd 0.3.2

openttd openttd 0.5.1

openttd openttd

openttd openttd 0.4.0

openttd openttd 0.3.7

openttd openttd 0.2.1

openttd openttd 0.2.0

openttd openttd 0.3.3

openttd openttd 0.3.5