Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
BID:11804
Info
Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 11804 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 03 2004 12:00AM |
| Updated: | Dec 03 2004 12:00AM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Computer Associates Unicenter Remote Control German GA 6.0 (Build 6.0.74) Computer Associates Unicenter Remote Control German 6.0 SP1 (Build 6.0.77) Computer Associates Unicenter Remote Control French GA 6.0 (Build 6.0.74) Computer Associates Unicenter Remote Control French 6.0 SP1 (Build 6.0.77) Computer Associates Unicenter Remote Control English QO48974 6.0 (Build 6.0.74) Computer Associates Unicenter Remote Control English GA 6.0 (6.0.56.3) Computer Associates Unicenter Remote Control English 6.0 SP1 (Build 6.0.77) |
| Not Vulnerable: | |
Discussion
Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
It is reported that URC may allow a remote attacker to gain unauthorized access to a URC management server. This can result in a remote attacker gaining administrative access to server.
A successful attack may allow an attacker to compromise computers that are managed by Unicenter Remote Control Enterprise.
It is reported that URC may allow a remote attacker to gain unauthorized access to a URC management server. This can result in a remote attacker gaining administrative access to server.
A successful attack may allow an attacker to compromise computers that are managed by Unicenter Remote Control Enterprise.
Exploit / POC
Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
Solution:
The vendor has released fixes to address this issue. Please contact the vendor to obtain the fixes. See the Computer Associates reference in Web references for more information.
Computer Associates Unicenter Remote Control English 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control German GA 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control French GA 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control German 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control English QO48974 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control French 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control English GA 6.0 (6.0.56.3)
Solution:
The vendor has released fixes to address this issue. Please contact the vendor to obtain the fixes. See the Computer Associates reference in Web references for more information.
Computer Associates Unicenter Remote Control English 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control German GA 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control French GA 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control German 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control English QO48974 6.0 (Build 6.0.74)
Computer Associates Unicenter Remote Control French 6.0 SP1 (Build 6.0.77)
Computer Associates Unicenter Remote Control English GA 6.0 (6.0.56.3)
References
Computer Associates Unicenter Remote Control Remote Authentication Bypass Vulnerability
References:
References:
- Unicenter Remote Control 6.0 and 6.0 SP1 Potential Security Risk (Computer Associates)