PT-2015-7760 · Huawei · Huawei Document Security Management+1
Published
2015-11-18
·
Updated
2016-01-13
·
CVE-2015-8303
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Huawei Document Security Management (DSM) versions prior to V100R002C05SPC661
Description
The issue allows local users to obtain sensitive information by pasting the contents to another file because the clipboard is not cleared when a secure file is closed. This can lead to information leaks as data in the clipboard can be copied into common documents that do not use the DSM.
Recommendations
For versions prior to V100R002C05SPC661, update to V100R002C05SPC661 or later to resolve the issue. As a temporary workaround, consider manually clearing the clipboard after closing a secure file to minimize the risk of information leaks.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Huawei Document Security Management
Huawei Vrp