Blue Coat Unified Agent < 4.6.2 Configuration File Manipulation Detection Failure
Low Nessus Plugin ID 93403
SynopsisA security and acceleration application installed on the remote Windows host is affected by a failure to detect manipulation of a configuration file.
DescriptionThe version of Blue Coat Unified Agent installed on the remote Windows host is prior to 4.6.2. It is, therefore, affected by a flaw due to a failure to detect when a configuration file has been changed by an administrator when running in local enforcement mode. A local attacker can exploit this to unblock categories or disable Unified Agent entirely.
Note that Unified Agents running in cloud mode are not affected by the vulnerability.
SolutionUpgrade to Blue Coat Unified Agent version 4.6.2 or later.