This script is Copyright (C) 2012-2013 Tenable Network Security, Inc.
The remote FreeBSD host is missing a security-related update.
XMPP Standards Foundation reports :
Some implementations of the XMPP Server Dialback protocol (RFC
3920/XEP-0220) have not been checking dialback responses to ensure
that validated results are correlated with requests.
An attacking server could spoof one or more domains in communicating
with a vulnerable server implementation, thereby avoiding the
protections built into the Server Dialback protocol.
See also :
Update the affected package.
Risk factor :
Medium / CVSS Base Score : 5.8