The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6264 | vdb entry |
http://www.compaq.com/products/servers/management/mgtsw-advisory.html | patch vendor advisory |
http://archives.neohapsis.com/archives/vuln-dev/2001-q1/0779.html | vendor advisory mailing list |