메뉴 건너뛰기

GREATUSER

cve

CVE-2017-12787

관리자 2017.08.27 07:00 조회 수 : 76

A network interface of the novi_process_manager_daemon service, included in the NoviWare software distribution through NW400.2.6 and deployed on NoviSwitch devices, can be inadvertently exposed if an operator attempts to modify ACLs, because of a bug when ACL modifications are applied. This could be leveraged by remote, unauthenticated attackers to gain resultant privileged (root) code execution on the switch, because incoming packet data can contain embedded OS commands, and can also trigger a stack-based buffer overflow.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12787
번호 제목 글쓴이 날짜 조회 수
332 CVE-2017-0073 관리자 2017.03.18 162
331 CVE-2017-0078 관리자 2017.03.18 162
330 CVE-2017-7407 관리자 2017.04.04 162
329 CVE-2017-16524 관리자 2017.11.09 162
328 CVE-2014-4919 관리자 2018.01.25 162
327 CVE-2018-5968 관리자 2018.01.25 162
326 CVE-2013-7450 관리자 2017.04.04 163
325 CVE-2017-13130 관리자 2017.08.27 163
324 CVE-2017-9506 관리자 2017.08.27 163
323 CVE-2017-14016 관리자 2017.11.09 163
322 CVE-2018-5783 관리자 2018.01.25 163
321 CVE-2017-17858 관리자 2018.01.25 163
320 CVE-2017-0031 관리자 2017.03.18 164
319 CVE-2017-0148 관리자 2017.03.18 164
318 CVE-2017-12136 관리자 2017.08.27 164
위로