CVE-2014-3139: High severity Unitrends Enterprise Backup vulnerability
Published May 2, 2014
·Updated
recoveryconsole/bpl/snmpd.php in Unitrends Enterprise Backup 7.3.0 allows remote attackers to bypass authentication by setting the auth parameter to a certain string.
Affected Software
1 affected component
Unitrends Enterprise Backup=7.3.0
Event History
May 2, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:55 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-3139?
CVE-2014-3139 is considered a high severity vulnerability due to its ability to allow unauthorized remote access.
2
How do I fix CVE-2014-3139?
To fix CVE-2014-3139, update to a newer version of Unitrends Enterprise Backup that addresses this vulnerability.
3
Who is affected by CVE-2014-3139?
CVE-2014-3139 affects users of Unitrends Enterprise Backup version 7.3.0.
4
What type of attack does CVE-2014-3139 enable?
CVE-2014-3139 enables remote attackers to bypass authentication controls.
5
When was CVE-2014-3139 disclosed?
CVE-2014-3139 was disclosed in April 2014.