Security Advisory

CVE-2009-2344

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-07-07 19:00:00
Last updated 2024-08-07 05:44:55
Assigner mitre
State PUBLISHED

Description

The web-based management interfaces in Sourcefire Defense Center (DC) and 3D Sensor before 4.8.2 allow remote authenticated users to gain privileges via a $admin value for the admin parameter in an edit action to admin/user/user.cgi and unspecified other components.