CVE-2004-1223: Medium severity f-secure policy manager vulnerability
Published Dec 15, 2004
·Updated
The Management Agent in F-Secure Policy Manager 5.11.2810 allows remote attackers to gain sensitive information, such as the absolute path for the web server, via an HTTP request to fsmsh.dll without any parameters.
Affected Software
1 affected component
F-Secure Policy Manager=5.11
Event History
Dec 15, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1223?
CVE-2004-1223 is considered a medium severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2004-1223?
To fix CVE-2004-1223, update to a patched version of F-Secure Policy Manager that addresses this vulnerability.
3
What type of information can be exposed by CVE-2004-1223?
CVE-2004-1223 can expose sensitive information such as the absolute path of the web server.
4
Who is affected by CVE-2004-1223?
CVE-2004-1223 affects users of F-Secure Policy Manager version 5.11.
5
Can CVE-2004-1223 be exploited remotely?
Yes, CVE-2004-1223 can be exploited remotely via crafted HTTP requests.