5
CVSSv2

CVE-2014-9245

Published: 15/12/2014 Updated: 21/03/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Zenoss Core through 5 Beta 3 allows remote malicious users to obtain sensitive information by attempting a product-rename action with an invalid new name and then reading a stack trace, as demonstrated by internal URL information, aka ZEN-15382.

Vulnerable Product Search on Vulmon Subscribe to Product

zenoss zenoss core 2.4.0

zenoss zenoss core 2.5.0

zenoss zenoss core 3.0.2

zenoss zenoss core 3.1.0

zenoss zenoss core 5.0.0

zenoss zenoss core 3.2.1

zenoss zenoss core 4.2.0

zenoss zenoss core 4.2.3

zenoss zenoss core 4.2.4

zenoss zenoss core 2.5.1

zenoss zenoss core 2.5.2

zenoss zenoss core 3.0.0

zenoss zenoss core 3.0.1

zenoss zenoss core 2.4.5

zenoss zenoss core 3.0.3

zenoss zenoss core 3.2.0

zenoss zenoss core 4.2.5

zenoss zenoss core