Vulnerability Details CVE-2011-4129
(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 58.8%
CVSS Severity
CVSS v2 Score 5.8
Products affected by CVE-2011-4129
-
cpe:2.3:a:gnome:libsocialweb:0.25.0
-
cpe:2.3:a:gnome:libsocialweb:0.25.1
-
cpe:2.3:a:gnome:libsocialweb:0.25.10
-
cpe:2.3:a:gnome:libsocialweb:0.25.11
-
cpe:2.3:a:gnome:libsocialweb:0.25.12
-
cpe:2.3:a:gnome:libsocialweb:0.25.13
-
cpe:2.3:a:gnome:libsocialweb:0.25.14
-
cpe:2.3:a:gnome:libsocialweb:0.25.15
-
cpe:2.3:a:gnome:libsocialweb:0.25.16
-
cpe:2.3:a:gnome:libsocialweb:0.25.17
-
cpe:2.3:a:gnome:libsocialweb:0.25.18
-
cpe:2.3:a:gnome:libsocialweb:0.25.19
-
cpe:2.3:a:gnome:libsocialweb:0.25.2
-
cpe:2.3:a:gnome:libsocialweb:0.25.3
-
cpe:2.3:a:gnome:libsocialweb:0.25.4
-
cpe:2.3:a:gnome:libsocialweb:0.25.5
-
cpe:2.3:a:gnome:libsocialweb:0.25.6
-
cpe:2.3:a:gnome:libsocialweb:0.25.7
-
cpe:2.3:a:gnome:libsocialweb:0.25.8
-
cpe:2.3:a:gnome:libsocialweb:0.25.9