Page 2 of 13 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

19 Mar 2021 — Cloud Manager versions prior to 3.9.4 contain an insecure Cross-Origin Resource Sharing (CORS) policy which could allow a remote attacker to interact with Cloud Manager. Cloud Manager versiones anteriores a 3.9.4, contienen una política no segura de tipo Cross-Origin Resource Sharing (CORS) que podría permitir a un atacante remoto interactuar con Cloud Manager • https://security.netapp.com/advisory/NTAP-20210318-0002 •

CVSS: 5.9EPSS: 0%CPEs: 1EXPL: 0

09 Sep 2014 — The Cloud Manager (aka com.ileaf.cloud_manager) application 1.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. La aplicación Cloud Manager 1.6 (también conocida como com.ileaf.cloud_manager) para Android no verifica los certificados X.509 de los servidores SSL, lo que permite a atacantes man-in-the-middle falsificar servidores y obtener información sensible a través de un c... • http://www.kb.cert.org/vuls/id/582497 • CWE-310: Cryptographic Issues •

CVSS: 9.8EPSS: 5%CPEs: 3EXPL: 0

02 Sep 2011 — The RPC implementation in the server in Novell Cloud Manager 1.1.2 before Patch 3 does not properly initialize objects, which allows remote attackers to execute arbitrary code by making RPC calls that leverage incorrect privileges associated with a partially initialized session. La implementación de RPC en el servidor de Novell Cloud Manager v1.1.2 anterior a la revisión 3 no inicializa correctamente los objetos, que permite a atacantes remotos ejecutar código arbitrario mediante llamadas RPC que aprovechan... • http://download.novell.com/Download?buildid=NSONlV5PqMo~ • CWE-20: Improper Input Validation •