Netcool/NeuSecure Insecure File Permissions Vulnerability
BID:16700
Info
Netcool/NeuSecure Insecure File Permissions Vulnerability
| Bugtraq ID: | 16700 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 16 2006 12:00AM |
| Updated: | Dec 13 2006 06:18PM |
| Credit: | [email protected] is credited with the discovery of this vulnerability. |
| Vulnerable: |
Micromuse Netcool/Neusecure 3.0.236 -1 |
| Not Vulnerable: | |
Discussion
Netcool/NeuSecure Insecure File Permissions Vulnerability
Netcool/NeuSecure is prone to a vulnerability regarding insecure permissions on the default installation of the application.
This may lead to loss of confidentiality and may allow an attacker to view configuration files containing passwords. Further attacks are also possible.
Version 3.0.236-1 is vulnerable; other versions may also be affected.
Netcool/NeuSecure is prone to a vulnerability regarding insecure permissions on the default installation of the application.
This may lead to loss of confidentiality and may allow an attacker to view configuration files containing passwords. Further attacks are also possible.
Version 3.0.236-1 is vulnerable; other versions may also be affected.
Exploit / POC
Netcool/NeuSecure Insecure File Permissions Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Netcool/NeuSecure Insecure File Permissions Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]:[email protected].
References
Netcool/NeuSecure Insecure File Permissions Vulnerability
References:
References: