The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote attackers to execute arbitrary code via crafted input to the (1) GetSymmCmdRequest or (2) RemoteServiceHandler class.
References
Link | Resource |
---|---|
http://seclists.org/bugtraq/2016/Oct/7 | Third Party Advisory |
http://www.securityfocus.com/bid/93343 | |
http://www.securitytracker.com/id/1036941 |
Configurations
Configuration 1 (hide)
|
History
05 Aug 2021, 14:46
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:emc:unisphere:8.0:*:*:*:*:vmax:*:* cpe:2.3:a:emc:unisphere:8.2:*:*:*:*:vmax:*:* cpe:2.3:a:emc:unisphere:8.1:*:*:*:*:vmax:*:* |
cpe:2.3:a:dell:emc_unisphere:8.1.2:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.0:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.2:*:*:*:*:vmax:*:* cpe:2.3:a:dell:emc_unisphere:8.1:*:*:*:*:vmax:*:* |
Information
Published : 2016-10-05 01:59
Updated : 2024-02-04 18:53
NVD link : CVE-2016-6646
Mitre link : CVE-2016-6646
CVE.ORG link : CVE-2016-6646
JSON object : View
Products Affected
dell
- emc_unisphere
emc
- unisphere
- solutions_enabler
CWE
CWE-20
Improper Input Validation