Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Improper Input Validation vulnerability in the End of Life (EOL) OVA based connect component
Vulnerability Description
An improper input validation vulnerability is identified in the End of Life (EOL) OVA based connect component which is deployed for installation purposes in the customer internal network. This EOL component was deprecated in September 2023 with end of support extended till January 2024. Under certain circumstances, an actor can manipulate a specific request parameter and inject code execution payload which could lead to a remote code execution on the infrastructure hosting this component.
CVSS Information
N/A
Vulnerability Type
输入验证不恰当
Vulnerability Title
Saviynt EOL OVA(Saviynt End of Life OVA) 安全漏洞
Vulnerability Description
Saviynt EOL OVA(Saviynt End of Life OVA)是Saviynt公司的一个生命周期组件。 Saviynt EOL OVA(Saviynt End of Life OVA)存在安全漏洞,该漏洞源于输入验证不当,可能导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A