CVE-2014-2959 - CERT CVE
ID CVE-2014-2959
Sažetak logViewer.htm on the Dell ML6000 tape backup system with firmware before i8.2.0.2 (641G.GS103) and the Quantum Scalar i500 tape backup system with firmware before i8.2.2.1 (646G.GS002) allows remote attackers to execute arbitrary commands via shell metacharacters in a pathname parameter.
Reference
CVSS
Base: 9.0
Impact: 8.5
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE PARTIAL PARTIAL
CVSS vektor AV:N/AC:L/Au:N/C:C/I:P/A:P
Zadnje važnije ažuriranje 26-06-2014 - 04:50
Objavljeno 02-06-2014 - 19:55