PT-2012-2349 · Microsoft · Forefront Unified Access Gateway (Uag) 2010
Kai Wilke
·
Published
2012-04-10
·
Updated
2018-10-12
·
CVE-2012-0147
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1
Description
The issue allows remote attackers to obtain sensitive information via a crafted HTTPS request due to improper configuration of the default web site.
Recommendations
For Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1, consider reconfiguring the default web site to prevent unfiltered access until a proper fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Forefront Unified Access Gateway (Uag) 2010