Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC Connectrix Manager Converged Network Edition 信息泄露漏洞
Vulnerability Description
EMC Connectrix Manager是美国易安信(EMC)公司的一套网络存储解决方案。EMC Connectrix Manager Converged Network Edition(CMCNE)是Connectrix Manager的融合网络版。 EMC CMCNE 12.1.2及之前版本中的FileUploadController servlet中存在安全漏洞,该漏洞源于程序没有限制Connectrix Manager库添加文件。远程攻击者可通过导入特制的固件文件利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A