Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-2276

Опубликовано: 21 мар. 2014
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:emc:connectrix_manager:*:-:-:*:converged_network_edition:*:*:*
Версия до 12.1.2 (включая)

EPSS

Процентиль: 62%
0.00435
Низкий

5 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
больше 3 лет назад

The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.

EPSS

Процентиль: 62%
0.00435
Низкий

5 Medium

CVSS2

Дефекты

CWE-264