CVE-2012-1258
09.01.2020, 20:15
cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer before 9.0.1.19899 does not validate user permissions, which allow remote attackers to add user accounts with administrator privileges via the newuser, pwd, and selectedUserGroup parameters.Enginsight
Vendor | Product | Version |
---|---|---|
plixer | scrutinizer_netflow_\&_sflow_analyzer | 𝑥 < 9.0.1.19899 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References