This application requires Javascript for optimal performance.

Iomega.StorCenter.Pro.NAS.Web.Authentication.Bypass

Release Date

Jan 05, 2012

Severity

high

Impact

Security Bypass: Remote attackers can bypass the security checking of vulnerable systems.

Description

This indicates an attack attempt to exploit an Authentication Bypass vulnerability in Iomega StorCenter Pro Network.

The vulnerability is caused by an error that occurs when the software handles a malicious WebDAV request. A remote attacker may exploit this to bypass authentication via a crafted HTTP request.

Affected Products

Iomega StorCenter Pro Network

Recommended Actions

Currently we are not aware of any vendor supplied patches for this issue.

Coverage

IPS
VCM

Reference: VID-17554