HP Systems Insight Manager WMI Mapper Bug Lets Local Users Gain Elevated Privileges
|
|
SecurityTracker Alert ID: 1021835 |
|
SecurityTracker URL: http://securitytracker.com/id/1021835
|
|
CVE Reference:
CVE-2009-0712
(Links to External Site)
|
Date: Mar 11 2009
|
Impact:
User access via local system
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): WMI Mapper prior to v2.5.2.0
|
Description:
A vulnerability was reported in WMI Mapper for HP Systems Insight Manager. A local user can obtain elevated privileges on the target system.
A local user can gain unauthorized access.
No details were provided.
|
Impact:
A local user can gain unauthorized access.
|
Solution:
The vendor has issued a fix (WMIMapper2_6_0.msi).
The vendor's advisory is available at:
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01655638
|
Vendor URL: h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01655638 (Links to External Site)
|
Cause:
Not specified
|
Underlying OS:
Windows (Any)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 10 Mar 2009 21:43:32 -0500
Subject: HPSBMA02412 SSRT080040 rev.1 - WMI Mapper for HP Systems Insight Manager Running on Windows, Remote Unauthorized Access to Data, Local Unauthorized Access
|
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01655638
CVE-2009-0712
|
|