
CVE-2021-26991
https://notcve.org/view.php?id=CVE-2021-26991
19 Mar 2021 — Cloud Manager versions prior to 3.9.4 contain an insecure Cross-Origin Resource Sharing (CORS) policy which could allow a remote attacker to interact with Cloud Manager. Cloud Manager versiones anteriores a 3.9.4, contienen una política no segura de tipo Cross-Origin Resource Sharing (CORS) que podría permitir a un atacante remoto interactuar con Cloud Manager • https://security.netapp.com/advisory/NTAP-20210318-0002 •

CVE-2011-2654 – Novell Cloud Manager Insufficient Framework User Validation Vulnerability
https://notcve.org/view.php?id=CVE-2011-2654
02 Sep 2011 — The RPC implementation in the server in Novell Cloud Manager 1.1.2 before Patch 3 does not properly initialize objects, which allows remote attackers to execute arbitrary code by making RPC calls that leverage incorrect privileges associated with a partially initialized session. La implementación de RPC en el servidor de Novell Cloud Manager v1.1.2 anterior a la revisión 3 no inicializa correctamente los objetos, que permite a atacantes remotos ejecutar código arbitrario mediante llamadas RPC que aprovechan... • http://download.novell.com/Download?buildid=NSONlV5PqMo~ • CWE-20: Improper Input Validation •