首页 -> 安全研究

安全研究

安全漏洞
CA Unicenter Remote Control和Control IT权限提升漏洞

发布日期:2003-12-12
更新日期:2003-12-18

受影响系统:
Computer Associates Control IT Enterprise Edition 5.1
Computer Associates Control IT Enterprise Edition 5.0
Computer Associates Control IT Advanced Edition 5.0
Computer Associates Unicenter Remote Control Option German Version 5.1
Computer Associates Unicenter Remote Control Option 5.1
Computer Associates Unicenter Remote Control Option 5.0
Computer Associates Unicenter Remote Control 5.2
描述:
BUGTRAQ  ID: 9205

Computer Associates Unicenter是一款强大的系统和网络管理软件,管理套件提供了功能强大的监督和报告能力。

CA Unicenter包含的Remote Control和Control IT存在权限提升问题,远程攻击者可以利用这个漏洞未授权访问本地系统帐户。

目前没有详细漏洞细节提供。

<*来源:Computer Associates
  
  链接:http://support.ca.com/techbases/rp/urc5x-secnote.html
*>

建议:
厂商补丁:

Computer Associates
-------------------
目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载:

Computer Associates Unicenter Remote Control Option 5.0:

Computer Associates Patch QO48412.CAZ
ftp://ftp.ca.com/pub/unicenter/TNGRCO/nt/0002/qo48412/QO48412.CAZ

Computer Associates Control IT Enterprise Edition 5.0:

Computer Associates Patch QO48415.CAZ
ftp://ftp.ca.com/pub/unicenter/controlitee/9910/qo48415/QO48415.CAZ

Computer Associates Control IT Advanced Edition 5.0:

Computer Associates Patch QO48416.CAZ
ftp://ftp.ca.com/pub/unicenter/controlitae/9909/qo48416/QO48416.CAZ

Computer Associates Control IT Enterprise Edition 5.1:

Computer Associates Patch QO48413.CAZ
ftp://ftp.ca.com/pub/unicenter/controlitee/0102/qo48413/QO48413.CAZ

Computer Associates Unicenter Remote Control Option 5.1:

Computer Associates Patch QO48410.CAZ
ftp://ftp.ca.com/pub/unicenter/TNGRCO/nt/0011/qo48410/QO48410.CAZ

Computer Associates Unicenter Remote Control Option German Version 5.1:

Computer Associates Patch QO48411.CAZ
ftp://ftp.ca.com/pub/unicenter/TNGRCO/nt/0011/qo48411/QO48411.CAZ

Computer Associates Unicenter Remote Control 5.2:

Computer Associates Patch QO48406.CAZ
ftp://ftp.ca.com/pub/unicenter/TNGRCO/nt/0204/qo48406/QO48406.CAZ

浏览次数:3013
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载
绿盟科技给您安全的保障