PT-2015-1373 · Hewlett Packard · Hp Nonstop Safeguard Security

Publicado

2015-05-25

·

Atualizado

2016-12-03

·

CVE-2015-2123

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions HP NonStop Safeguard Security Software versions H06.x, L15.02, and J06.x through J06.18
Description The issue is related to insufficient access control for certain functions, which can be exploited by a remote attacker to gain elevated privileges using advanced access control features.
Recommendations For versions H06.x, consider restricting access to advanced access control features until a fix is available. For version L15.02, restrict the use of Expand access functionality to minimize the risk of exploitation. For versions J06.x through J06.18, avoid using the Expand access feature in the affected software until the issue is resolved.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-10466
CVE-2015-2123

Produtos afetados

Hp Nonstop Safeguard Security