Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3717 (harmoni)

BugsAlert Home > CVE-2008-3717 (harmoni)
 
 

Harmoni before 1.6.0 does not require administrative privileges to list (1) user names or (2) asset ids, which allows remote attackers to obtain sensitive information.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3717

Learn more about CVE-2008-3717 (harmoni)
 
Tags: cve-2008-3717 harmoni

Related Items

      FrSIRT - Redhat Security Update Fixes Java Multiple Code Execution Issues

      FrSIRT - Ubuntu Security Update Fixes ClamAV Off-by-one Overflow Vulnerability

      Vuln: Red Hat SBLIM Insecure Library Path Local Privilege Escalation Vulnerability

      FrSIRT - Adobe ColdFusion Client-Side Cross Site Scripting Vulnerabilities

      Brief: Senators quizz gov't on cybersecurity initiative

      CVE-2008-3635 (indeo, quicktime, windows-nt)

      Bugtraq: [ECHO_ADV_99$2008] Relative Real Estate Systems <= 3.0 (listing_id) Sql Injection Vulnerability

 

Pixel