Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to reset arbitrary passwords by providing the e-mail address associated with a user account.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Symantec LiveUpdate Administrator forgotten-password功能安全漏洞
Vulnerability Description
Symantec LiveUpdate Administrator(LUA)是美国赛门铁克(Symantec)公司的一套自动更新Symantec产品的应用程序。 Symantec LUA 2.3.2.110之前的2.x版本中管理GUI中的forcepasswd.do文件中的forgotten-password功能存在安全漏洞。远程攻击者可通过提供与用户帐户相关联的电子邮件地址利用该漏洞重置任意密码。
CVSS Information
N/A
Vulnerability Type
N/A