Vulnerabilities > EMC > Connectrix Manager

DATE CVE VULNERABILITY TITLE RISK
2014-03-21 CVE-2014-2276 Permissions, Privileges, and Access Controls vulnerability in EMC Connectrix Manager 11.2.1/12.0.1/12.0.3
The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.
network
low complexity
emc CWE-264
5.0
2013-12-12 CVE-2013-6810 Code Injection vulnerability in EMC Connectrix Manager 11.2.1/12.0.1/12.0.3
The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Advisor, and possibly other products, allows remote attackers to execute arbitrary code by using a servlet to upload an executable file.
network
low complexity
emc CWE-94
critical
10.0