CVE-2012-2603: Medium severity collabnet scrumworks vulnerability
Published Jun 8, 2012
·Updated
The server in CollabNet ScrumWorks Pro before 6.0 allows remote authenticated users to gain privileges and obtain sensitive information via a modified desktop client.
Affected Software
2 affected components
CollabNet ScrumWorks=5.0
CollabNet ScrumWorks=5.1
Event History
Jun 8, 2012
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2603?
CVE-2012-2603 has a medium severity rating due to the potential for privilege escalation and unauthorized information access.
2
How do I fix CVE-2012-2603?
To fix CVE-2012-2603, upgrade to CollabNet ScrumWorks Pro version 6.0 or later.
3
Who is affected by CVE-2012-2603?
CVE-2012-2603 affects remote authenticated users of CollabNet ScrumWorks Pro versions 5.0 and 5.1.
4
What type of vulnerability is CVE-2012-2603?
CVE-2012-2603 is a privilege escalation vulnerability that can be exploited by authenticated users.
5
What information can be leaked by exploiting CVE-2012-2603?
Exploiting CVE-2012-2603 can allow users to obtain sensitive information that they would not normally have access to.