clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the characters (1) A, which reveals the date and time, (2) F, (3) M, which reveals 'ifconfig' information, (4) P, which lists the processes, (5) Y, which reveals the snort log files, or (6) b, which reveals /var/log/messages.
References
Configurations
History
20 Nov 2024, 23:47
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/archive/1/313080 - | |
References | () http://www.securityfocus.com/bid/6934 - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/11419 - |
Information
Published : 2003-12-31 05:00
Updated : 2024-11-20 23:47
NVD link : CVE-2003-1379
Mitre link : CVE-2003-1379
CVE.ORG link : CVE-2003-1379
JSON object : View
Products Affected
point_clark_networks
- clarkconnect
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor