An improper check for an exceptional condition in the...
Moderate severity
Unreviewed
Published
Sep 13, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Sep 13, 2023
Published to the GitHub Advisory Database
Sep 13, 2023
Last updated
Apr 4, 2024
An improper check for an exceptional condition in the Insider Threat Management (ITM) Server could be used by an attacker to change the configuration of any already-registered agent so that all future agent communications are sent to an attacker-chosen URL. An attacker must first successfully obtain valid agent credentials and target agent hostname. All versions prior to 7.14.3.69 are affected.
References