Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.2.2019.1330
Kategorie:Huawei EulerOS Local Security Checks
Titel:Huawei EulerOS: Security Advisory for openwsman (EulerOS-SA-2019-1330)
Zusammenfassung:The remote host is missing an update for the Huawei EulerOS 'openwsman' package(s) announced via the EulerOS-SA-2019-1330 advisory.
Beschreibung:Summary:
The remote host is missing an update for the Huawei EulerOS 'openwsman' package(s) announced via the EulerOS-SA-2019-1330 advisory.

Vulnerability Insight:
Openwsman, versions up to and including 2.6.9, are vulnerable to arbitrary file disclosure because the working directory of openwsmand daemon was set to root directory. A remote, unauthenticated attacker can exploit this vulnerability by sending a specially crafted HTTP request to openwsman server. (CVE-2019-3816)

Affected Software/OS:
'openwsman' package(s) on Huawei EulerOS V2.0SP3.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2019-3816
BugTraq ID: 107368
http://www.securityfocus.com/bid/107368
BugTraq ID: 107409
http://www.securityfocus.com/bid/107409
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2V5HJ355RSKMFQ7GRJAHRZNDVXASF7TA/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B2HEZ7D7GF3HDF36JLGYXIK5URR66DS4/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CXQP7UDPRZIZ4LM7FEJCTC2EDUYVOR2J/
RedHat Security Advisories: RHSA-2019:0638
https://access.redhat.com/errata/RHSA-2019:0638
RedHat Security Advisories: RHSA-2019:0972
https://access.redhat.com/errata/RHSA-2019:0972
SuSE Security Announcement: openSUSE-SU-2019:1111 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00006.html
SuSE Security Announcement: openSUSE-SU-2019:1217 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00065.html
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.