CVE-2016-9928
PoC ×2—CVSS 3.1
7.4 high
EPSS
5%p91
Published
()
Modified
Description
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which will also garner associated privileges, via crafted XMPP packets.
In the news0 stories
No ingested article mentions this CVE yet.