Description
The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows remote attackers to gain sensitive information, such as server and OS version, and conduct unauthorized activities via an HTTP request to /diag.
Published: 2004-11-19
Score: 5.0 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2004-0915 The default installation of Vignette Application Portal installs the diagnostic utility without authentication requirements, which allows remote attackers to gain sensitive information, such as server and OS version, and conduct unauthorized activities via an HTTP request to /diag.
History

No history.

Subscriptions

Vignette Application Portal
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-08T00:31:48.314Z

Reserved: 2004-09-27T00:00:00.000Z

Link: CVE-2004-0917

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2005-01-27T05:00:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2004-0917

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses