Apple iChat Server does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via responses for domains that were not asserted.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2012-08-25T16:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-08-25T00:00:00
Link: CVE-2012-4672
JSON object: View
NVD Information
Status : Modified
Published: 2012-08-25T16:55:01.730
Modified: 2017-08-29T01:32:20.900
Link: CVE-2012-4672
JSON object: View
Redhat Information
No data.
CWE