The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequest, (2) PersistantDataRequest, or (3) GetCommandExecRequest class.
References
Link | Resource |
---|---|
http://seclists.org/bugtraq/2016/Oct/7 | Third Party Advisory |
http://www.securityfocus.com/bid/93343 | |
http://www.securitytracker.com/id/1036941 |
Configurations
Configuration 1 (hide)
|
History
05 Aug 2021, 14:46
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:emc:unisphere:8.0:*:*:*:*:vmax:*:* cpe:2.3:a:emc:unisphere:8.2:*:*:*:*:vmax:*:* cpe:2.3:a:emc:unisphere:8.1:*:*:*:*:vmax:*:* |
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:* |
Information
Published : 2016-10-05 01:59
Updated : 2024-02-04 18:53
NVD link : CVE-2016-6645
Mitre link : CVE-2016-6645
CVE.ORG link : CVE-2016-6645
JSON object : View
Products Affected
dell
- emc_unisphere
emc
- unisphere
- solutions_enabler
CWE
CWE-20
Improper Input Validation