Loadbalancer Enterprise VA Security Bypass Vulnerability
BID:66268
Info
Loadbalancer Enterprise VA Security Bypass Vulnerability
| Bugtraq ID: | 66268 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 17 2014 12:00AM |
| Updated: | Mar 21 2014 12:54AM |
| Credit: | xistence |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Loadbalancer Enterprise VA Security Bypass Vulnerability
Loadbalancer Enterprise VA is prone to a security-bypass vulnerability.
Exploiting this issue could allow an attacker to bypass certain security restrictions and perform unauthorized actions to the application.
Loadbalancer Enterprise VA 7.5.2 and prior are vulnerable.
Loadbalancer Enterprise VA is prone to a security-bypass vulnerability.
Exploiting this issue could allow an attacker to bypass certain security restrictions and perform unauthorized actions to the application.
Loadbalancer Enterprise VA 7.5.2 and prior are vulnerable.
Exploit / POC
Loadbalancer Enterprise VA Security Bypass Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
The following Metasploit exploit module is available:
Attackers can use standard, readily available tools to exploit this issue.
The following Metasploit exploit module is available:
Solution / Fix
Loadbalancer Enterprise VA Security Bypass Vulnerability
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly the issue is fixed, however Symantec has not confirmed this. Please contact the vendor for more information.
References
Loadbalancer Enterprise VA Security Bypass Vulnerability
References:
References: