CVE-2014-6039: High severity manageengine eventlog analyzer vulnerability
ManageEngine EventLog Analyzer version 7 through 9.9 build 9002 has a Credentials Disclosure Vulnerability. Fixed version 10 Build 10000.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2014-6039.
What is the severity of CVE-2014-6039?
The severity of CVE-2014-6039 is high with a severity value of 7.5.
What is the affected software?
The affected software is ManageEngine EventLog Analyzer version 7 through 9.9 build 9002.
How can I fix this vulnerability?
To fix this vulnerability, you need to update to version 10 Build 10000 of ManageEngine EventLog Analyzer.
Are there any references available for this vulnerability?
Yes, there are references available for this vulnerability. You can find them at the following links: [1](http://packetstormsecurity.com/files/128996/ManageEngine-EventLog-Analyzer-SQL-Credential-Disclosure.html), [2](http://seclists.org/fulldisclosure/2014/Nov/12), [3](http://www.securityfocus.com/bid/70960).