ICQ 98 Beta on Windows NT: Remote Attackers Can Obtain Internal IP Address

ICQ 98 Beta on Windows NT: Remote Attackers Can Obtain Internal IP Address

CVE-1999-1289 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of the public address (e.g. through NAT), which provides remote attackers with potentially sensitive information about the client or the internal network configuration.

Learn more about our Internal Network Penetration Testing.