Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The EdgeServiceImpl web service in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive credentials via a crafted SOAP request to the (1) getBackupPolicy or (2) getBackupPolicies method.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Arcserve UDP EdgeServiceImpl Web服务信息泄露漏洞
Vulnerability Description
Arcserve UDP(Unified Data Protection)是美国Arcserve公司的一套统一数据保护解决方案。该方案提供所有虚拟和物理环境的备份和恢复、全局重复数据删除等功能。 Arcserve UDP 5.0 Update 4之前版本的EdgeServiceImpl Web服务中的‘getBackupPolicy’和‘getBackupPolicies’方法存在安全漏洞。远程攻击者可通过发送特制的SOAP请求利用该漏洞获取敏感的证书。
CVSS Information
N/A
Vulnerability Type
N/A