Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
BID:54068
Info
Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
| Bugtraq ID: | 54068 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 18 2012 12:00AM |
| Updated: | Jun 18 2012 12:00AM |
| Credit: | V. Paulikas of SEC Consult Vulnerability Lab |
| Vulnerable: |
Western Digital ShareSpace 0 |
| Not Vulnerable: | |
Discussion
Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
Western Digital ShareSpace is prone to an information-disclosure vulnerability.
Successful exploits may allow attackers to obtain potentially sensitive information that may aid in other attacks.
Western Digital ShareSpace running firmware version 2.3.02 and prior are vulnerable.
Western Digital ShareSpace is prone to an information-disclosure vulnerability.
Successful exploits may allow attackers to obtain potentially sensitive information that may aid in other attacks.
Western Digital ShareSpace running firmware version 2.3.02 and prior are vulnerable.
Exploit / POC
Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
An attacker can exploit this issue with a browser.
An attacker can exploit this issue with a browser.
Solution / Fix
Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Western Digital ShareSpace WEB GUI Information Disclosure Vulnerability
References:
References:
- Western Digital ShareSpace Homepage (Western Digital)
- 20120618-0: WD ShareSpace WEB GUI Sensitive Data Disclosure (SEC Consult Vulnerability Lab)