Vertiv Avocent UMG-4000是美国维谛技术(Vertiv)公司的一款通用管理网关设备。该产品支持实时管理、监控、访问和控制IT设备和基础设施。 Vertiv Avocent UMG-4000 4.2.1.19版本中的Web接口存在跨站脚本漏洞。远程攻击者可借助恶意命令的文件利用该漏洞执行该文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Vertiv | Avocent UMG-4000 | 4.2.1.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-9507 | 8.3 HIGH | The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to arbitra |
| CVE-2019-9509 | 6.3 MEDIUM | The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to reflect |
No comments yet