Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
BID:60798
Info
Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
| Bugtraq ID: | 60798 |
| Class: | Design Error |
| CVE: |
CVE-2013-1615 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 01 2013 12:00AM |
| Updated: | Jul 01 2013 12:00AM |
| Credit: | Hacktive Security Research and Development team |
| Vulnerable: |
Symantec Security Information Manager 4.8.0 Symantec Security Information Manager 4.7.0 |
| Not Vulnerable: |
Symantec Security Information Manager 4.8.1 |
Discussion
Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
Symantec Security Information Manager is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
Versions prior to Symantec Security Information Manager 4.8.1 are vulnerable.
Symantec Security Information Manager is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
Versions prior to Symantec Security Information Manager 4.8.1 are vulnerable.
Exploit / POC
Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
Attackers can use a browser to exploit this issue.
Attackers can use a browser to exploit this issue.
Solution / Fix
Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Symantec Security Information Manager CVE-2013-1615 Information Disclosure Vulnerability
References:
References: