Security Advisory

CVE-2012-2963

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-08-12 16:00:00
Last updated 2024-09-16 16:13:33
Assigner certcc
State PUBLISHED

Description

The administrative interface in the embedded web server on the BreakingPoint Storm appliance before 3.0 does not require authentication for the gwt/BugReport script, which allows remote attackers to obtain sensitive information by downloading a .tgz file.