CVE Published: 29/08/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: symantec |
Vendor: Symantec Corporation |
Product: Management Center (MC) Status : PUBLISHED
CVE-2019-9697 Description
An information disclosure vulnerability in the Management Center (MC) REST API 2.0, 2.1, and 2.2 prior to 2.2.2.1 allows a malicious authenticated user to obtain passwords for external backup and CPL policy import servers that they might not otherwise be authorized to access.