An information disclosure vulnerability in the Management Center (MC) REST API 2.0, 2.1, and 2.2 prior to 2.2.2.1 allows a malicious authenticated user to obtain passwords for external backup and CPL policy import servers that they might not otherwise be authorized to access.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-19063 An information disclosure vulnerability in the Management Center (MC) REST API 2.0, 2.1, and 2.2 prior to 2.2.2.1 allows a malicious authenticated user to obtain passwords for external backup and CPL policy import servers that they might not otherwise be authorized to access.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: symantec

Published:

Updated: 2024-08-04T21:54:45.139Z

Reserved: 2019-03-11T00:00:00

Link: CVE-2019-9697

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-08-30T09:15:21.990

Modified: 2024-11-21T04:52:07.707

Link: CVE-2019-9697

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.