메뉴 건너뛰기

GREATUSER

cve

CVE-2017-16609

관리자 2018.01.25 04:00 조회 수 : 187

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Netgain Enterprise Manager. Authentication is not required to exploit this vulnerability. The specific flaw exists within download.jsp. The issue results from the lack of proper validation of a user-supplied string before using it to download a file. An attacker can leverage this vulnerability to expose sensitive information. Was ZDI-CAN-4750.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-16609
번호 제목 글쓴이 날짜 조회 수
62 CVE-2017-12694 관리자 2017.08.27 113
61 CVE-2014-9637 관리자 2017.08.27 112
60 CVE-2015-5700 관리자 2017.08.27 112
59 CVE-2015-4017 관리자 2017.08.27 112
58 CVE-2017-0129 관리자 2017.03.18 112
57 CVE-2017-0069 관리자 2017.03.18 112
56 CVE-2017-16646 관리자 2017.11.09 111
55 CVE-2017-0100 관리자 2017.03.18 111
54 CVE-2018-5956 관리자 2018.01.25 110
53 CVE-2014-4616 관리자 2017.08.27 109
52 CVE-2017-13669 관리자 2017.08.27 108
51 CVE-2015-2857 관리자 2017.08.27 108
50 CVE-2015-7258 관리자 2017.08.27 107
49 CVE-2014-1677 관리자 2017.04.04 107
48 CVE-2015-6926 관리자 2018.01.25 106
위로