VulnerabilityModified
CVE-2010-4184
NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information by sniffing the network.
MEDIUM 5.0EPSS 2.48%
Does this matter?
Lower severity and a low EPSS score (2.48%). Track it; it rarely justifies an emergency change on its own.
Description
NetSupport Manager (NSM) before 11.00.0005 sends HTTP headers with cleartext fields containing details about client machines, which allows remote attackers to obtain potentially sensitive information by sniffing the network.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 2.48% probability · 84th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-310
- Affected
- netsupportsoftware/netsupport manager
- Source
- cve@mitre.org
References
- http://www.kb.cert.org/vuls/id/465239US Government Resource
- http://www.netsupportsoftware.com/support/td.asp?td=634
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62984
- http://www.kb.cert.org/vuls/id/465239US Government Resource
- http://www.netsupportsoftware.com/support/td.asp?td=634
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62984
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.