First published: Fri Jun 08 2012(Updated: )
The server in CollabNet ScrumWorks Pro before 6.0 allows remote authenticated users to gain privileges and obtain sensitive information via a modified desktop client.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
CollabNet ScrumWorks | =5.0 | |
CollabNet ScrumWorks | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2603 has a medium severity rating due to the potential for privilege escalation and unauthorized information access.
To fix CVE-2012-2603, upgrade to CollabNet ScrumWorks Pro version 6.0 or later.
CVE-2012-2603 affects remote authenticated users of CollabNet ScrumWorks Pro versions 5.0 and 5.1.
CVE-2012-2603 is a privilege escalation vulnerability that can be exploited by authenticated users.
Exploiting CVE-2012-2603 can allow users to obtain sensitive information that they would not normally have access to.