CVE Vulnerabilities

CVE-2012-6534

Published: Mar 29, 2013 | Modified: Oct 05, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Novell Sentinel Log Manager before 1.2.0.3 allows remote attackers to create data retention policies via a crafted text/x-gwt-rpc request to novelllogmanager/datastorageservice.rpc, and allows remote authenticated Report Administrators to create data retention policies via a search-results Save Query As Save As Retention Policy action.

Affected Software

Name Vendor Start Version End Version
Sentinel_log_manager Novell * 1.2.0.2
Sentinel_log_manager Novell 1.0.0.5 1.0.0.5
Sentinel_log_manager Novell 1.1.0.1 1.1.0.1
Sentinel_log_manager Novell 1.2 1.2
Sentinel_log_manager Novell 1.0.0.4 1.0.0.4
Sentinel_log_manager Novell 1.2.0.1 1.2.0.1
Sentinel_log_manager Novell 1.1.0.2 1.1.0.2
Sentinel_log_manager Novell 1.1.0.0 1.1.0.0

References