Timelive CVE-2014-1217 Unauthorized Access Vulnerability
BID:67043
Info
Timelive CVE-2014-1217 Unauthorized Access Vulnerability
| Bugtraq ID: | 67043 |
| Class: | Design Error |
| CVE: |
CVE-2014-1217 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 23 2014 12:00AM |
| Updated: | Apr 23 2014 12:00AM |
| Credit: | Richard Hatch |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Timelive CVE-2014-1217 Unauthorized Access Vulnerability
Timelive is prone to an unauthorized-access vulnerability.
Attackers can exploit this issue to gain unauthorized access and obtain potentially sensitive information. This may aid in further attacks.
Timelive 6.2.71 is vulnerable. Other versions may also be affected.
Timelive is prone to an unauthorized-access vulnerability.
Attackers can exploit this issue to gain unauthorized access and obtain potentially sensitive information. This may aid in further attacks.
Timelive 6.2.71 is vulnerable. Other versions may also be affected.
Exploit / POC
Timelive CVE-2014-1217 Unauthorized Access Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
Solution / Fix
Timelive CVE-2014-1217 Unauthorized Access Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Timelive CVE-2014-1217 Unauthorized Access Vulnerability
References:
References:
- TimeLive Homepage (Livetecs)
- Vulnerability title: Unauthenticated access to sensitive information and functio (Portcullis Computer Security)