Innominate mGuard before 7.6.4 and 8.x before 8.0.3 does not require authentication for snapshot downloads, which allows remote attackers to obtain sensitive information via a crafted HTTPS request.
Metrics
Affected Vendors & Products
References
History
Fri, 03 Oct 2025 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Innominate mGuard Exposure of Sensitive Information to an Unauthorized Actor | |
References |
| |
Metrics |
cvssV2_0
|
cvssV2_0
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-03T17:08:22.828Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2356

No data.

Status : Deferred
Published: 2014-07-30T14:55:06.680
Modified: 2025-10-03T18:15:32.813
Link: CVE-2014-2356

No data.

No data.