NmConsole/utility/RenderMap.asp in Ipswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allows remote attackers to obtain sensitive information about network nodes via a modified nDeviceGroupID parameter.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/433808 | mailing list vdb entry exploit vendor advisory third party advisory |
http://secunia.com/advisories/20075 | vendor advisory third party advisory exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/26505 | third party advisory vdb entry |
http://www.vupen.com/english/advisories/2006/1787 | vdb entry permissions required |
http://www.osvdb.org/25475 | vdb entry broken link |
http://securityreason.com/securityalert/897 | third party advisory |