Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in the CUA Login Module in EMC Centera Universal Access (CUA) 4.0_4735.p4 allows remote attackers to execute arbitrary SQL commands via the user (user name) field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC Centera Universal Access username参数SQ注入漏洞
Vulnerability Description
CENTERA Universal Access是EMC公司的CENTERA存储系统的管理软件。 CENTERA Universal Access没有正确过滤CUA Module Login中的用户名字段,远程攻击者可以通过"--"句法绕过出口令检查,使用表格中第一个可用的用户名登录。在执行几次尝试或通过搜索CUA Module中的Accounts标签后,攻击者就可以收集所有用户名列表,然后选择出管理员帐号并在用户名后添加"--"登录到系统。
CVSS Information
N/A
Vulnerability Type
N/A