Commvault CommCell是美国Commvault公司的一款应用于企业环境的存储管理工具。 CommCell Commvault 存在路径遍历漏洞,该漏洞源于尝试查看日志文件可以改为查看文件 在日志文件文件夹之外。以下产品及版本受到影响:14.68版本, 15.x系列15.58之前版本, 16.x系列16.44之前版本, 17.x系列17.29之前版本, 18.x系列18.13之前版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CommCell in Commvault before 14.68, 15.x before 15.58, 16.x before 16.44, 17.x before 17.29, and 18.x before 18.13 are vulnerable to local file inclusion because an attacker can view a log file can instead view a file outside of the log-files folder. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-25780.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-7746 | 7.5 HIGH | Prototype Pollution |
| CVE-2020-5931 | F5 BIG-IP 安全漏洞 | |
| CVE-2020-14323 | Samba 代码问题漏洞 | |
| CVE-2020-25516 | WSO2 Enterprise Integrator 跨站脚本漏洞 | |
| CVE-2020-5938 | F5 BIG-IP 加密问题漏洞 | |
| CVE-2020-5937 | F5 BIG-IP APM 安全漏洞 | |
| CVE-2020-21266 | Broadleaf Commerce 跨站脚本漏洞 | |
| CVE-2020-27993 | Hrsale 路径遍历漏洞 | |
| CVE-2020-5935 | F5 BIG-IP 安全漏洞 | |
| CVE-2020-5933 | F5 BIG-IP 安全漏洞 | |
| CVE-2020-5932 | F5 BIG-IP ASM 跨站脚本漏洞 | |
| CVE-2020-27885 | WSO2 API Manager 跨站脚本漏洞 | |
| CVE-2020-5934 | F5 BIG-IP APM 安全漏洞 | |
| CVE-2020-5936 | F5 BIG-IP 资源管理错误漏洞 | |
| CVE-2020-27744 | Western Digital My Cloud 操作系统命令注入漏洞 | |
| CVE-2020-27995 | ZOHO ManageEngine Applications Manager SQL注入漏洞 | |
| CVE-2020-27996 | Smartstore SmartStoreNET 安全漏洞 | |
| CVE-2020-27998 | FastReports fastreport 加密问题漏洞 | |
| CVE-2020-27747 | Click Studios Passwordstate 安全漏洞 | |
| CVE-2020-27886 | Github eonweb SQL注入漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet