Zenoss Core through 5 Beta 3 allows remote attackers to obtain sensitive information by attempting a product-rename action with an invalid new name and then reading a stack trace, as demonstrated by internal URL information, aka ZEN-15382.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: certcc

Published: 2014-12-15T17:27:00

Updated: 2014-12-13T04:57:00

Reserved: 2014-12-03T00:00:00


Link: CVE-2014-9245

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2014-12-15T18:59:20.787

Modified: 2016-03-21T16:03:23.103


Link: CVE-2014-9245

JSON object: View

cve-icon Redhat Information

No data.

CWE