Логотип exploitDog
bind:CVE-2021-37106
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-37106

Количество 3

Количество 3

nvd логотип

CVE-2021-37106

больше 4 лет назад

There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2r4h-9r32-83xj

больше 3 лет назад

There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system.

CVSS3: 7.2
EPSS: Низкий
fstec логотип

BDU:2021-05634

больше 4 лет назад

Уязвимость модуля CMA программного обеспечения для виртуализации вычислений FusionCompute, позволяющая нарушителю выполнить произвольные команды

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-37106

There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system.

CVSS3: 7.2
0%
Низкий
больше 4 лет назад
github логотип
GHSA-2r4h-9r32-83xj

There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when processing the default certificate file. The software constructs part of a command using external special input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands to the system.

CVSS3: 7.2
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-05634

Уязвимость модуля CMA программного обеспечения для виртуализации вычислений FusionCompute, позволяющая нарушителю выполнить произвольные команды

CVSS3: 7.2
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу