Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the DumpToFile method in the NQMcsVarSet ActiveX control in Agent Manager in NetIQ Sentinel allows remote attackers to create arbitrary files, and consequently execute arbitrary code, via a crafted pathname.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NetIQ Sentinel 目录遍历漏洞
Vulnerability Description
NetIQ Sentinel是美国NetIQ公司的一套安全信息和事件管理(SIEM)解决方案。该方案能够收集、存储和分析日志数据,并做出报告,同时实时分析安全事件数据。 NetIQ Sentinel中的Agent Manager的NQMcsVarSet ActiveX控件中的‘DumpToFile’方法存在目录遍历漏洞。远程攻击者可借助特制的路径名利用该漏洞创建任意文件,进而执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A