CVE-2016-6645

The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequest, (2) PersistantDataRequest, or (3) GetCommandExecRequest class.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:solutions_enabler:8.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:unisphere:8.0.3:*:*:*:*:vmax:*:*

History

21 Nov 2024, 02:56

Type Values Removed Values Added
References () http://seclists.org/bugtraq/2016/Oct/7 - Third Party Advisory () http://seclists.org/bugtraq/2016/Oct/7 - Third Party Advisory
References () http://www.securityfocus.com/bid/93343 - () http://www.securityfocus.com/bid/93343 -
References () http://www.securitytracker.com/id/1036941 - () http://www.securitytracker.com/id/1036941 -

05 Aug 2021, 14:46

Type Values Removed Values Added
CPE cpe:2.3:a:emc:unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.1:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:*

Information

Published : 2016-10-05 01:59

Updated : 2024-11-21 02:56


NVD link : CVE-2016-6645

Mitre link : CVE-2016-6645

CVE.ORG link : CVE-2016-6645


JSON object : View

Products Affected

emc

  • unisphere
  • solutions_enabler

dell

  • emc_unisphere
CWE
CWE-20

Improper Input Validation