PT-2004-3473 · Novell · Novell Ichain

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-2582

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Novell iChain version 2.3
Description The issue allows remote attackers to obtain sensitive information because the build number is included in the VIA line of the proxy server's HTTP headers.
Recommendations For Novell iChain version 2.3, consider removing or obscuring the build number from the VIA line of the proxy server's HTTP headers to prevent the disclosure of sensitive information.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-2582

Affected Products

Novell Ichain