Security Vulnerability: Privileged Account Manager Unauthenticated Access Vulnerability

  • 7022630
  • 01-Feb-2018
  • 23-Jan-2019

Environment

Privileged Account Manager 3.2
Privileged Account Manager 3.1

Situation

CVE-2018-1343 - PAM exposure enabling unauthenticated access to remote host

Resolution

We have addressed CVE-2018-1343 which addresses an exposure allowing direct access to the system. To resolve this vulnerability:

For 3.2.x, please apply PAM 3.2.0.6 or later.
For 3.1.x, please apply PAM 3.1.0.4 or later.

Customers using earlier versions of Privileged Account Manager should upgrade their software to at least version 3.1.0.4 or 3.2.0.6 in order to fully secure their system.

It is advised to update as soon as possible.

Status

Security Alert

Additional Information

CVE-2018-1343