Описание
Remote Code execution vulnerability in Micro Focus Operation Bridge Reporter (OBR) product, affecting version 10.40. The vulnerability could be exploited to allow Remote Code Execution on the OBR server.
Remote Code execution vulnerability in Micro Focus Operation Bridge Reporter (OBR) product, affecting version 10.40. The vulnerability could be exploited to allow Remote Code Execution on the OBR server.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-22502
- https://softwaresupport.softwaregrp.com/doc/KM03775947
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-22502
- https://www.zerodayinitiative.com/advisories/ZDI-21-153
- https://www.zerodayinitiative.com/advisories/ZDI-21-154
- http://packetstormsecurity.com/files/162408/Micro-Focus-Operations-Bridge-Reporter-Unauthenticated-Command-Injection.html
Связанные уязвимости
Remote Code execution vulnerability in Micro Focus Operation Bridge Reporter (OBR) product, affecting version 10.40. The vulnerability could be exploited to allow Remote Code Execution on the OBR server.
Уязвимость программного обеспечения для ИТ-отчетности Operation Bridge Reporter (OBR), связанная с некорректной обработкой параметров конечной точки LogonResource, позволяющая нарушителю выполнить произвольный код