An HTTP servlet in vApp Manager in EMC Unisphere for VMAX Virtual Appliance before 8.2.0 allows remote attackers to write to arbitrary files via a crafted pathname.
References
| Link | Resource |
|---|---|
| http://seclists.org/bugtraq/2016/Apr/83 | Vendor Advisory |
| http://www.securitytracker.com/id/1035580 | |
| http://seclists.org/bugtraq/2016/Apr/83 | Vendor Advisory |
| http://www.securitytracker.com/id/1035580 |
Configurations
History
21 Nov 2024, 02:42
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://seclists.org/bugtraq/2016/Apr/83 - Vendor Advisory | |
| References | () http://www.securitytracker.com/id/1035580 - |
05 Aug 2021, 14:45
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:dell:emc_unisphere:*:*:*:*:*:vmax:*:* |
Information
Published : 2016-04-15 14:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-0889
Mitre link : CVE-2016-0889
CVE.ORG link : CVE-2016-0889
JSON object : View
Products Affected
dell
- emc_unisphere
CWE
CWE-20
Improper Input Validation
