(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2012-10-22T23:00:00Z

Updated: 2024-08-07T00:01:50.481Z

Reserved: 2011-10-18T00:00:00Z

Link: CVE-2011-4129

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-10-22T23:55:04.587

Modified: 2017-01-05T14:20:15.913

Link: CVE-2011-4129

cve-icon Redhat

No data.