LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
BID:72291
Info
LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
| Bugtraq ID: | 72291 |
| Class: | Design Error |
| CVE: |
CVE-2015-0926 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 23 2015 12:00AM |
| Updated: | Jan 23 2015 12:00AM |
| Credit: | Iwan Boskamp |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
LabTech is prone to an insecure file-permission vulnerability.
A local attacker can exploit this issue to obtain potentially sensitive information and overwrite certain files. Information obtained may aid in further attacks.
LabTech is prone to an insecure file-permission vulnerability.
A local attacker can exploit this issue to obtain potentially sensitive information and overwrite certain files. Information obtained may aid in further attacks.
Exploit / POC
LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
Attackers can use readily available tools and standard commands to exploit this issue.
Attackers can use readily available tools and standard commands to exploit this issue.
Solution / Fix
LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
LabTech CVE-2015-0926 Insecure File Permissions Vulnerability
References:
References: