The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequest, (2) PersistantDataRequest, or (3) GetCommandExecRequest class.
References
Link | Resource |
---|---|
http://seclists.org/bugtraq/2016/Oct/7 | Third Party Advisory |
http://www.securityfocus.com/bid/93343 | |
http://www.securitytracker.com/id/1036941 | |
http://seclists.org/bugtraq/2016/Oct/7 | Third Party Advisory |
http://www.securityfocus.com/bid/93343 | |
http://www.securitytracker.com/id/1036941 |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:56
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/bugtraq/2016/Oct/7 - Third Party Advisory | |
References | () http://www.securityfocus.com/bid/93343 - | |
References | () http://www.securitytracker.com/id/1036941 - |
Information
Published : 2016-10-05 01:59
Updated : 2024-11-21 02:56
NVD link : CVE-2016-6645
Mitre link : CVE-2016-6645
CVE.ORG link : CVE-2016-6645
JSON object : View
Products Affected
emc
- solutions_enabler
- unisphere
dell
- emc_unisphere
CWE
CWE-20
Improper Input Validation