- EPSS 0.69%
- Veröffentlicht 30.03.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:51:45
The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to command injection because the application incorrectly neutralizes code syntax before executing. Since all commands within the web application are executed as root, thi...
CVE-2019-9508
- EPSS 0.18%
- Veröffentlicht 30.03.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:51:45
The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to stored XSS. A remote attacker authenticated with an administrator account could store a maliciously named file within the web application that would execute each time ...
CVE-2019-9509
- EPSS 0.35%
- Veröffentlicht 30.03.2020 22:15:14
- Zuletzt bearbeitet 21.11.2024 04:51:45
The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to reflected XSS in an HTTP POST parameter. The web application does not neutralize user-controllable input before displaying to users in a web page, which could allow a ...