RSS   Vulnerabilities for 'Information enterprise server'   RSS

2014-05-02
 
CVE-2014-3006

CWE-264
 

 
Sitepark Information Enterprise Server (IES) 2.9 before 2.9.6, when upgraded from an earlier version, does not properly restrict access, which allows remote attackers to change the manager account password and obtain sensitive information via a request to install/.

 


Copyright 2024, cxsecurity.com

 

Back to Top