CVE-2014-2959

Published Jun 2, 2014

Last updated 10 years ago

Overview

Description
logViewer.htm on the Dell ML6000 tape backup system with firmware before i8.2.0.2 (641G.GS103) and the Quantum Scalar i500 tape backup system with firmware before i8.2.2.1 (646G.GS002) allows remote attackers to execute arbitrary commands via shell metacharacters in a pathname parameter.
Source
cret@cert.org
NVD status
Modified

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
9
Impact score
8.5
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:C/I:P/A:P

Weaknesses

nvd@nist.gov
CWE-78

Configurations