CVE-2012-2223

The xplat agent in Novell ZENworks Configuration Management (ZCM) 10.3.x before 10.3.4 and 11.x before 11.2 enables the HTTP TRACE method, which might make it easier for remote attackers to conduct cross-site tracing (XST) attacks via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:novell:zenworks_configuration_management:10.3:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:10.3.1:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:10.3.2:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:10.3.3:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:11:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:11.1:*:*:*:*:*:*:*
cpe:2.3:a:novell:zenworks_configuration_management:11.1a:*:*:*:*:*:*:*

History

No history.

Information

Published : 2012-04-11 10:39

Updated : 2024-02-04 18:16


NVD link : CVE-2012-2223

Mitre link : CVE-2012-2223

CVE.ORG link : CVE-2012-2223


JSON object : View

Products Affected

novell

  • zenworks_configuration_management
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor