메뉴 건너뛰기

GREATUSER

cve

CVE-2017-12787

관리자 2017.08.27 07:00 조회 수 : 78

A network interface of the novi_process_manager_daemon service, included in the NoviWare software distribution through NW400.2.6 and deployed on NoviSwitch devices, can be inadvertently exposed if an operator attempts to modify ACLs, because of a bug when ACL modifications are applied. This could be leveraged by remote, unauthenticated attackers to gain resultant privileged (root) code execution on the switch, because incoming packet data can contain embedded OS commands, and can also trigger a stack-based buffer overflow.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12787
번호 제목 글쓴이 날짜 조회 수
227 CVE-2018-1000015 관리자 2018.01.25 177
226 CVE-2017-15092 관리자 2018.01.25 177
225 CVE-2016-3227 관리자 2016.06.17 178
224 CVE-2017-0074 관리자 2017.03.18 178
223 CVE-2017-0084 관리자 2017.03.18 178
222 CVE-2017-13143 (imagemagick) 관리자 2017.08.27 178
221 CVE-2017-14099 관리자 2017.09.04 178
220 CVE-2018-5958 관리자 2018.01.25 178
219 CVE-2017-15091 관리자 2018.01.25 178
218 CVE-2016-3230 관리자 2016.06.17 179
217 CVE-2017-0134 관리자 2017.03.18 179
216 CVE-2017-9511 관리자 2017.08.27 179
215 CVE-2017-16647 관리자 2017.11.09 179
214 CVE-2017-15111 관리자 2018.01.25 179
213 CVE-2017-12130 관리자 2018.01.25 179
위로