First published: Wed Jul 27 2022(Updated: )
VISAM VBASE version 11.6.0.6 is vulnerable to improper access control via the web-remote endpoint, which may allow an unauthenticated user viewing access to folders and files in the directory listing.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Visam Vbase Web-remote | =11.6.0.6 | |
VISAM VBASE Pro-RT/ Server-RT (Web Remote) | =11.6.0.6 |
VISAM recommends users update to VBASE v11.7.0.2 or later. Users may obtain a download link by submitting a request form. For more information, please contact VISAM using the information provided on the company contact page.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.