Vulnerability Description
NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information by sniffing the network.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netsupportsoftware | Netsupport Manager | <= 11.00 |
Related Weaknesses (CWE)
References
- http://www.kb.cert.org/vuls/id/465239US Government Resource
- http://www.netsupportsoftware.com/support/td.asp?td=634
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62984
- http://www.kb.cert.org/vuls/id/465239US Government Resource
- http://www.netsupportsoftware.com/support/td.asp?td=634
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62984
FAQ
What is CVE-2010-4184?
CVE-2010-4184 is a vulnerability with a CVSS score of 5.0 (MEDIUM). NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information ...
How severe is CVE-2010-4184?
CVE-2010-4184 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-4184?
Check the references section above for vendor advisories and patch information. Affected products include: Netsupportsoftware Netsupport Manager.