CVE-2013-6492

The Piranha Configuration Tool in Piranha 0.8.6 does not properly restrict access to webpages, which allows remote attackers to bypass authentication and read or modify the LVS configuration via an HTTP POST request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ryan_ohara:piranha:0.8.6:*:*:*:*:*:*:*

History

21 Nov 2024, 01:59

Type Values Removed Values Added
References () http://bugs.centos.org/view.php?id=6825 - () http://bugs.centos.org/view.php?id=6825 -
References () http://rhn.redhat.com/errata/RHSA-2014-0174.html - () http://rhn.redhat.com/errata/RHSA-2014-0174.html -
References () http://rhn.redhat.com/errata/RHSA-2014-0175.html - () http://rhn.redhat.com/errata/RHSA-2014-0175.html -
References () https://bugzilla.redhat.com/show_bug.cgi?id=1043040 - () https://bugzilla.redhat.com/show_bug.cgi?id=1043040 -

Information

Published : 2014-02-14 15:55

Updated : 2024-11-21 01:59


NVD link : CVE-2013-6492

Mitre link : CVE-2013-6492

CVE.ORG link : CVE-2013-6492


JSON object : View

Products Affected

ryan_ohara

  • piranha
CWE
CWE-264

Permissions, Privileges, and Access Controls