Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is affected by a directory traversal vulnerability. Attackers with knowledge of Webservice Gateway credentials could potentially exploit this vulnerability to access unauthorized information, and modify or delete data, by supplying specially crafted strings in input parameters of the web service call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款EMC产品Webservice Gateway 路径遍历漏洞
Vulnerability Description
EMC ViPR SRM等都是美国易安信(EMC)公司的产品。EMC ViPR SRM是一套存储资源管理软件。Storage M&R是一款数据存储收集器。Webservice Gateway是其中的一个网关。 多款EMC产品中的Webservice Gateway存在目录遍历漏洞。远程攻击者可通过发送带有目录遍历序列‘../’的请求利用该漏洞未授权访问信息,更改或删除数据。以下产品受到影响:EMC ViPR SRM;Storage M&R;VNX M&R;M&R (Watch4Net) for SAS S
CVSS Information
N/A
Vulnerability Type
N/A