PT-2015-7760 · Huawei · Huawei Document Security Management+1
Publicado
2015-11-18
·
Atualizado
2016-01-13
·
CVE-2015-8303
CVSS v2.0
2.1
Baixa
| Vetor | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Huawei Document Security Management (DSM) versions prior to V100R002C05SPC661
Description
The issue allows local users to obtain sensitive information by pasting the contents to another file because the clipboard is not cleared when a secure file is closed. This can lead to information leaks as data in the clipboard can be copied into common documents that do not use the DSM.
Recommendations
For versions prior to V100R002C05SPC661, update to V100R002C05SPC661 or later to resolve the issue. As a temporary workaround, consider manually clearing the clipboard after closing a secure file to minimize the risk of information leaks.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Huawei Document Security Management
Huawei Vrp