CVE-2003-1379

clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the characters (1) A, which reveals the date and time, (2) F, (3) M, which reveals 'ifconfig' information, (4) P, which lists the processes, (5) Y, which reveals the snort log files, or (6) b, which reveals /var/log/messages.
Configurations

Configuration 1 (hide)

cpe:2.3:h:point_clark_networks:clarkconnect:1.2:*:linux:*:*:*:*:*

History

20 Nov 2024, 23:47

Type Values Removed Values Added
References () http://www.securityfocus.com/archive/1/313080 - () http://www.securityfocus.com/archive/1/313080 -
References () http://www.securityfocus.com/bid/6934 - Patch () http://www.securityfocus.com/bid/6934 - Patch
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/11419 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/11419 -

Information

Published : 2003-12-31 05:00

Updated : 2024-11-20 23:47


NVD link : CVE-2003-1379

Mitre link : CVE-2003-1379

CVE.ORG link : CVE-2003-1379


JSON object : View

Products Affected

point_clark_networks

  • clarkconnect
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor