PT-2011-2356 · F Secure · F-Secure Internet Gatekeeper For Linux
Hiroshi Mizoguchi
·
Published
2011-02-18
·
Updated
2011-03-11
·
CVE-2011-0453
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
F-Secure Internet Gatekeeper for Linux versions 3.x before 3.03
Description
The issue allows remote attackers to obtain potentially sensitive information via a TCP session on the admin UI port because it does not require authentication for reading access logs.
Recommendations
For F-Secure Internet Gatekeeper for Linux versions 3.x before 3.03, update to version 3.03 or later to address the issue.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
F-Secure Internet Gatekeeper For Linux