NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
BID:56535
Info
NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
| Bugtraq ID: | 56535 |
| Class: | Design Error |
| CVE: |
CVE-2012-5930 CVE-2012-5931 CVE-2012-5932 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 15 2012 12:00AM |
| Updated: | Dec 21 2012 06:50PM |
| Credit: | rgod |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
NetIQ Privileged User Manager is prone to an authentication-bypass vulnerability.
Successful exploits may allow attackers to bypass security restrictions and change the administrator password. This may aid in further attacks.
NetIQ Privileged User Manager is prone to an authentication-bypass vulnerability.
Successful exploits may allow attackers to bypass security restrictions and change the administrator password. This may aid in further attacks.
Exploit / POC
NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
NetIQ Privileged User Manager Admin Password Change Authentication Bypass Vulnerability
References:
References: