Warning: Declaration of Jetpack_IXR_Client::query() should be compatible with IXR_Client::query(...$args) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php on line 30 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 Warning: Cannot modify header information - headers already sent by (output started at /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-content/plugins/jetpack/class.jetpack-ixr-client.php:0) in /home/httpd/vhosts/it-sicherheit.li/httpdocs/wp-includes/rest-api/class-wp-rest-server.php on line 1794 {"id":120,"date":"2016-08-12T16:55:01","date_gmt":"2016-08-12T15:55:01","guid":{"rendered":"http:\/\/it-sicherheit.li\/?p=120"},"modified":"2016-08-12T16:55:48","modified_gmt":"2016-08-12T15:55:48","slug":"vrealize-log-sicherheitsluecke","status":"publish","type":"post","link":"https:\/\/it-sicherheit.li\/vrealize-log-sicherheitsluecke\/","title":{"rendered":"vRealize Log Sicherheitsl\u00fccke"},"content":{"rendered":"

\"8x6k0fv\"<\/p>\n

Wie VMware gerade bekannt gegeben hat, gibt es eine Sicherheitsl\u00fccke im Produkt vRealize Log Insight.<\/p>\n

Es besteht die Gefahr von Directory Traversal Angriffen<\/a> \u00fcber dieses Produkt. Durch diese Art von\u00a0Angriffen k\u00f6nnen Daten und Passw\u00f6rter ausgelesen und gestohlen werden.<\/p>\n

Laut VMware gibt es keinen Workaround, nur ein Update<\/a> hilft gegen die L\u00fccke.<\/p>\n

Hier die Auflistung der Betroffenen Versionen:<\/p>\n

VMware\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Product\u00a0\u00a0 Running\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Replace with\/
\nProduct\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Version\u00a0\u00a0 on\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Severity\u00a0\u00a0 Apply Patch\u00a0\u00a0\u00a0\u00a0 Workaround
\n====================\u00a0\u00a0 =======\u00a0\u00a0 =======\u00a0\u00a0 ========\u00a0\u00a0 =============\u00a0\u00a0 ==========
\nvRealize Log Insight\u00a0\u00a0 3.x\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 VA\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Moderate\u00a0\u00a0 3.6.0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 None
\nvRealize Log Insight\u00a0\u00a0 2.x\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 VA\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 Moderate\u00a0\u00a0 3.6.0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 None<\/span><\/p>\n

VMware wurde durch Peter Nelson <\/a>\u00fcber die Schwachstelle Informiert und konnte schnell ein Update herausbringen.<\/p>\n\"Facebook\"<\/a>\"twitter\"<\/a>\"google_plus\"<\/a>\"reddit\"<\/a>\"pinterest\"<\/a>\"linkedin\"<\/a>\"mail\"<\/a>","protected":false},"excerpt":{"rendered":"

Wie VMware gerade bekannt gegeben hat, gibt es eine Sicherheitsl\u00fccke im Produkt vRealize Log Insight. Es besteht die Gefahr von Directory Traversal Angriffen \u00fcber dieses Produkt. Durch diese Art von\u00a0Angriffen k\u00f6nnen Daten und Passw\u00f6rter ausgelesen und gestohlen werden. Laut VMware gibt es keinen Workaround, nur ein Update hilft gegen die L\u00fccke. Hier die Auflistung der […]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[35],"tags":[39,36,40],"jetpack_featured_media_url":"","_links":{"self":[{"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/posts\/120"}],"collection":[{"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/comments?post=120"}],"version-history":[{"count":2,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/posts\/120\/revisions"}],"predecessor-version":[{"id":122,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/posts\/120\/revisions\/122"}],"wp:attachment":[{"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/media?parent=120"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/categories?post=120"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/it-sicherheit.li\/wp-json\/wp\/v2\/tags?post=120"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}