메뉴 건너뛰기

GREATUSER

cve

CVE-2017-12787

관리자 2017.08.27 07:00 조회 수 : 9

A network interface of the novi_process_manager_daemon service, included in the NoviWare software distribution through NW400.2.6 and deployed on NoviSwitch devices, can be inadvertently exposed if an operator attempts to modify ACLs, because of a bug when ACL modifications are applied. This could be leveraged by remote, unauthenticated attackers to gain resultant privileged (root) code execution on the switch, because incoming packet data can contain embedded OS commands, and can also trigger a stack-based buffer overflow.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-12787
번호 제목 글쓴이 날짜 조회 수
212 CVE-2017-12074 관리자 2017.08.27 12
211 CVE-2017-13671 관리자 2017.08.27 12
210 CVE-2017-13693 관리자 2017.08.27 12
209 CVE-2017-13697 관리자 2017.08.27 12
208 CVE-2015-3211 관리자 2017.08.27 12
207 CVE-2014-7859 관리자 2017.08.27 12
206 CVE-2017-7930 관리자 2017.08.27 12
205 CVE-2017-14122 관리자 2017.09.04 12
204 CVE-2017-16546 (imagemagick) 관리자 2017.11.09 12
203 CVE-2017-16636 관리자 2017.11.09 12
202 CVE-2017-2912 관리자 2017.11.09 12
201 CVE-2017-2866 관리자 2017.11.09 12
200 CVE-2017-2881 관리자 2017.11.09 12
199 CVE-2017-16649 관리자 2017.11.09 12
198 CVE-2017-1693 관리자 2018.01.25 12
위로