PT-2019-14305 · Trend Micro · Deep Security Manager

Publicado

2019-10-17

·

Atualizado

2020-08-24

·

CVE-2019-15626

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Deep Security Manager versions 10.0 through 12.0
Description The issue concerns the transmission of initial LDAP communication in clear text when the application is configured in a certain way. This may result in a confidentiality impact, but it does not affect integrity or availability.
Recommendations For versions 10.0 through 12.0, consider reconfiguring the application to encrypt LDAP communication to mitigate the risk of confidentiality impact.

Correção

Cleartext Transmission of Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-15626

Produtos afetados

Deep Security Manager