Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration interface in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allow remote attackers to hijack the authentication of administrators, as demonstrated by a power-off request to the private/blade_power_action script.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM BladeCenter web管理界面多个跨站脚本和跨站请求伪造漏洞
Vulnerability Description
IBM BladeCenter是美国IBM公司的系列高性能刀片服务器。 BladeCenter所使用的高级管理模块(AMM)的Web管理接口没有正确地过滤用户所提交的输入和请求。AMM的文件管理器未经任何过滤便在页面显示用户所提交的输入,如果通过认证的管理员访问了恶意URL的话就可能导致另一个跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A