KLA10331
SB vulnerability in Snare
Обновлено: 17/06/2019
Дата обнаружения
02/07/2010
Уровень угрозы
High
Описание

A CSRF vulnerability was found in Snare. By exploiting this vulnerability malicious users can hijack administrator auth. This vulnerability can be exploited remotely.

Пораженные продукты

InterSect Alliance Snare Agent versions 3.2.3 and earlier for Solaris
InterSect Alliance Snare Agent versions 3.1.7 and earlier for Windows
InterSect Alliance Snare Agent versions 1.5.0 and earlier for Linux and AIX
InterSect Alliance Snare Agent versions 1.4 and earlier for IRIX
InterSect Alliance Snare Epilog versions 1.5.3 and earlier for Windows
InterSect Alliance Snare Epilog versions 1.2 and earlier for UNIX 

Решение

Update to latest version

Оказываемое влияние
?
SB 
[?]
Связанные продукты
Snare for Windows
Epilog for Windows
CVE-IDS