WIMS Unspecified Privilege Escalation Vulnerability
BID:20626
Info
WIMS Unspecified Privilege Escalation Vulnerability
| Bugtraq ID: | 20626 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 19 2006 12:00AM |
| Updated: | Oct 20 2006 05:48PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Universite de Nice WIMS 3.56 Universite de Nice WIMS 3.54 |
| Not Vulnerable: |
Universite de Nice WIMS 3.60 |
Discussion
WIMS Unspecified Privilege Escalation Vulnerability
WIMS is prone to an unspecified design error that allows for privilege escalation.
An attacker could leverage this issue to modify application data.
WIMS versions prior to 3.60 are vulnerable.
WIMS is prone to an unspecified design error that allows for privilege escalation.
An attacker could leverage this issue to modify application data.
WIMS versions prior to 3.60 are vulnerable.
Exploit / POC
WIMS Unspecified Privilege Escalation Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
WIMS Unspecified Privilege Escalation Vulnerability
Solution:
The vendor has released version 3.60 to address this issue. Please see the references for more information.
Solution:
The vendor has released version 3.60 to address this issue. Please see the references for more information.
References
WIMS Unspecified Privilege Escalation Vulnerability
References:
References:
- WIMS Downloads and Release Information (XIAO Gang)
- WIMS Homepage (XIAO Gang)