← Back

CVE-2008-5828

nvd nist
Published: Jan 2, 2009Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Microsoft Windows Live Messenger Client 8.5.1 and earlier, when MSN Protocol Version 15 (MSNP15) is used over a NAT session, allows remote attackers to discover intranet IP addresses and port numbers by reading the (1) IPv4InternalAddrsAndPorts, (2) IPv4Internal-Addrs, and (3) IPv4Internal-Port header fields.

Affected (4)

1 product
Windows Live Messenger
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Up to 8.5.1
Version 8.0
Version 8.1
Version 8.5

References (4)

Timeline

No history available yet.