CVE-2016-6645

The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequest, (2) PersistantDataRequest, or (3) GetCommandExecRequest class.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:solutions_enabler:8.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.1.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:solutions_enabler:8.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:unisphere:8.0.3:*:*:*:*:vmax:*:*

History

05 Aug 2021, 14:46

Type Values Removed Values Added
CPE cpe:2.3:a:emc:unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:emc:unisphere:8.1:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:*
cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:*

Information

Published : 2016-10-05 01:59

Updated : 2024-02-04 18:53


NVD link : CVE-2016-6645

Mitre link : CVE-2016-6645

CVE.ORG link : CVE-2016-6645


JSON object : View

Products Affected

dell

  • emc_unisphere

emc

  • unisphere
  • solutions_enabler
CWE
CWE-20

Improper Input Validation