CyberSec.Space Logo
返回 CVE 浏览器

CVE-2019-18780

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0460%
EPSS Percentile2.56th
Published2019年11月5日
Last Modified2024年11月21日

Vulnerability Description

An arbitrary command injection vulnerability in the Cluster Server component of Veritas InfoScale allows an unauthenticated remote attacker to execute arbitrary commands as root or administrator. These Veritas products are affected: Access 7.4.2 and earlier, Access Appliance 7.4.2 and earlier, Flex Appliance 1.2 and earlier, InfoScale 7.3.1 and earlier, InfoScale between 7.4.0 and 7.4.1, Veritas Cluster Server (VCS) 6.2.1 and earlier on Linux/UNIX, Veritas Cluster Server (VCS) 6.1 and earlier on Windows, Storage Foundation HA (SFHA) 6.2.1 and earlier on Linux/UNIX, and Storage Foundation HA (SFHA) 6.1 and earlier on Windows.

Affected Platforms (CPE)

📦
Veritas

Access

<= 7.4.2
📦
Veritas

Access Appliance

<= 7.4.2
📦
Veritas

Flex Appliance

<= 1.2
📦
Veritas

Infoscale

<= 7.3.1
📦
Veritas

Infoscale

>= 7.4.0 and <= 7.4.1
📦
Veritas

Cluster Server

<= 6.1
📦
Veritas

Storage Foundation Ha

<= 6.1
📦
Veritas

Cluster Server

<= 6.2.1
📦
Veritas

Storage Foundation Ha

<= 6.2.1

References & Advisories

相关漏洞威胁