An information disclosure vulnerability exists in Cisco License Manager Server. The vulnerability is due to insufficient validation on user supplied paths when a request is sent to ReportCSV servlet. A remote, unauthenticated attacker can exploit this vulnerability by sending a crafted request to the target system.
from Check Point Update Services Advisories http://ift.tt/2zRrwGm
No comments:
Post a Comment