|
|||
Rule General Information |
---|
Release Date: | 2013-04-10 | |
Rule Name: | Novell ZENworks Asset Management Web Console Information Disclosure -1 (CVE-2012-4933) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | An information disclosure vulnerability exists in Novell ZENworks Asset Management. The vulnerability is due to hard coded credentials in the GetFile_Password and GetConfigInfo_Password functions. These functions allow access to the file system and system configuration parameters. | |
Impact: | Privilege escalation | |
Affected OS: | Others | |
Reference: | CVE-2012-4933 |
|
Solutions |
---|
Update vendor's patch. |