Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Absolute path traversal vulnerability in hpdiags/frontend2/commands/saveCompareConfig.php in HP Insight Diagnostics 9.4.0.4710 allows remote attackers to write data to arbitrary files via a full pathname in the argument to the devicePath (aka mount) parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HP Insight Diagnostics 远程代码注入漏洞
Vulnerability Description
HP Insight Diagnostics是美国惠普(HP)公司的一款服务器管理软件。该软件提供诊断、故障排除等功能。 HP Insight Diagnostics 9.4.0.4710中的hpdiags/frontend2/commands/saveCompareConfig.php中存在绝对路径遍历漏洞。远程攻击者可以通过向devicePath参数传递完整路径从而利用该漏洞在任意位置写入恶意文件。
CVSS Information
N/A
Vulnerability Type
N/A