Vertiv Avocent UMG-4000是美国维谛技术(Vertiv)公司的一款通用管理网关设备。该产品支持实时管理、监控、访问和控制IT设备和基础设施。 Vertiv Avocent UMG-4000 4.2.1.19版本中的Web接口的HTTP POST参数存在跨站脚本漏洞。攻击者可利用该漏洞执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Vertiv | Avocent UMG-4000 | 4.2.1.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-9507 | 8.3 HIGH | The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to arbitra |
| CVE-2019-9508 | 6.3 MEDIUM | Vertiv Avocent UMG-4000 version 4.2.1.19 web interface is vulnerable to stored cross site |
No comments yet