RSS   Vulnerabilities for 'Defense center'   RSS

2009-07-07
 
CVE-2009-2344

CWE-264
 

 
The web-based management interfaces in Sourcefire Defense Center (DC) and 3D Sensor before 4.8.2 allow remote authenticated users to gain privileges via a $admin value for the admin parameter in an edit action to admin/user/user.cgi and unspecified other components.

 

 >>> Vendor: Sourcefire 8 Products
Snort
Intrusion sensor
3d sensor
Defense center
3d1000
3d2000
3d9900
Dc1000


Copyright 2024, cxsecurity.com

 

Back to Top