EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/407641 | us government resource third party advisory patch |
http://secunia.com/advisories/16470 | third party advisory vendor advisory |
http://secunia.com/advisories/16464 | third party advisory patch vendor advisory |
http://securitytracker.com/id?1014713 | vdb entry patch |
http://www.legato.com/support/websupport/product_alerts/081605_NW_token_authentication.htm | |
http://www.securityfocus.com/bid/14582 | vdb entry patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/21892 | vdb entry |
http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1 | patch vendor advisory |
http://www.osvdb.org/18801 | vdb entry |