The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-03-21T14:00:00

Updated: 2024-08-06T10:06:00.338Z

Reserved: 2014-03-04T00:00:00

Link: CVE-2014-2276

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-03-21T14:55:07.160

Modified: 2017-08-29T01:34:30.233

Link: CVE-2014-2276

cve-icon Redhat

No data.