CommonName Toolbar Potential Information Leakage Weakness
BID:5878
Info
CommonName Toolbar Potential Information Leakage Weakness
| Bugtraq ID: | 5878 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 03 2002 12:00AM |
| Updated: | Oct 03 2002 12:00AM |
| Credit: | Discovery credited to Eric Stevens <[email protected]>. |
| Vulnerable: |
CommonName CommonName Toolbar 3.5.2 .0 |
| Not Vulnerable: | |
Discussion
CommonName Toolbar Potential Information Leakage Weakness
The CommonName Toolbar may unintentionally expose local intranet addresses. When an intranet server name is entered while the CommonName Toolbar is active, the Toolbar will send the name to the CommonName organization for resolution.
This information will be sent across untrusted network space.
The CommonName Toolbar may unintentionally expose local intranet addresses. When an intranet server name is entered while the CommonName Toolbar is active, the Toolbar will send the name to the CommonName organization for resolution.
This information will be sent across untrusted network space.
Exploit / POC
CommonName Toolbar Potential Information Leakage Weakness
There is no exploit required.
There is no exploit required.
Solution / Fix
CommonName Toolbar Potential Information Leakage Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
CommonName Toolbar Potential Information Leakage Weakness
References:
References:
- CommonName Home Page (CommonName)