CVE-2016-6645

The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequest, (2) PersistantDataRequest, or (3) GetCommandExecRequest class.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:solutions_enabler:8.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:unisphere:8.0.3:*:*:*:*:vmax:*:*

History

21 Nov 2024, 02:56

Type Values Removed Values Added
References () http://seclists.org/bugtraq/2016/Oct/7 - Third Party Advisory () http://seclists.org/bugtraq/2016/Oct/7 - Third Party Advisory
References () http://www.securityfocus.com/bid/93343 - () http://www.securityfocus.com/bid/93343 -
References () http://www.securitytracker.com/id/1036941 - () http://www.securitytracker.com/id/1036941 -

Information

Published : 2016-10-05 01:59

Updated : 2024-11-21 02:56


NVD link : CVE-2016-6645

Mitre link : CVE-2016-6645

CVE.ORG link : CVE-2016-6645


JSON object : View

Products Affected

emc

  • solutions_enabler
  • unisphere

dell

  • emc_unisphere
CWE
CWE-20

Improper Input Validation