Total vulnerabilities in the database
The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.
CVSS v2:
No CWE or OWASP classifications available.