First published: Fri Sep 13 2013(Updated: )
The gadget implementation in Cisco SocialMiner does not properly restrict the content of GET requests, which allows remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history, aka Bug ID CSCuh74125.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco SocialMiner |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.