Security Advisory

CVE-2011-0435

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-03-07 20:00:00
Last updated 2024-08-06 21:51:09
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Domain Technologie Control (DTC) before 0.32.9 does not require authentication for (1) admin/bw_per_month.php and (2) client/bw_per_month.php, which allows remote attackers to obtain potentially sensitive bandwidth information via a direct request.