Security Advisory

CVE-2012-2696

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-01-04 22:00:00
Last updated 2024-08-06 19:42:31
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The backend in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1 does not properly check privileges, which allows remote authenticated users to query arbitrary information via a (1) SOAP or (2) GWT request.