Zenoss Core through 5 Beta 3 allows remote attackers to obtain sensitive information by attempting a product-rename action with an invalid new name and then reading a stack trace, as demonstrated by internal URL information, aka ZEN-15382.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2014-12-15T17:27:00

Updated: 2024-08-06T13:40:24.901Z

Reserved: 2014-12-03T00:00:00

Link: CVE-2014-9245

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-12-15T18:59:20.787

Modified: 2016-03-21T16:03:23.103

Link: CVE-2014-9245

cve-icon Redhat

No data.