Required CVE Record Information
Description
The web interface in Fujitsu-Siemens Computers PRIMERGY BX300 Switch Blade allows remote attackers to obtain sensitive information by canceling the authentication dialog when accessing a sub-page, which still displays the form field contents of the sub-page, as demonstrated using (1) config/ip_management.htm and (2) config/snmp_config.htm.
References 7 Total
- securityfocus.com: 24761 vdb-entry
- vupen.com: ADV-2007-2442 vdb-entry
- osvdb.org: 37837 vdb-entry
- http://www.redteam-pentesting.de/advisories/rt-sa-2007-003.php
- secunia.com: 25943 third-party-advisory
- securityfocus.com: 20070704 Fujitsu-Siemens PRIMERGY BX300 Switch Blade Information Disclosure mailing-list
- exchange.xforce.ibmcloud.com: primergy-web-interface-info-disclosure(35264) vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- securityfocus.com: 24761 vdb-entryx_transferred
- vupen.com: ADV-2007-2442 vdb-entryx_transferred
- osvdb.org: 37837 vdb-entryx_transferred
- http://www.redteam-pentesting.de/advisories/rt-sa-2007-003.php x_transferred
- secunia.com: 25943 third-party-advisoryx_transferred
- securityfocus.com: 20070704 Fujitsu-Siemens PRIMERGY BX300 Switch Blade Information Disclosure mailing-listx_transferred
- exchange.xforce.ibmcloud.com: primergy-web-interface-info-disclosure(35264) vdb-entryx_transferred