This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in LinkManager web portal of Secomea GateManager allows logged in LinkManager user to access stored SiteManager backup files.
The product does not handle or incorrectly handles when it has insufficient privileges to perform an operation, leading to resultant weaknesses.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://www.secomea.com/support/cybersecurity-advisory/ | not applicable vendor advisory |