Novell Zenworks Desktop Management Image Upload 未明安全绕过漏洞

漏洞信息详情

Novell Zenworks Desktop Management Image Upload 未明安全绕过漏洞

漏洞简介

Novell ZENworks 7 Desktop Management Support Pack 1 紧急补丁3 (ZDM7SP1HP3)的之前版本中存在未明漏洞。远程攻击者可以通过不明向量上传图像到没有在\”仅允许上传到以下目录\”设置中被配置的文件夹中。

漏洞公告

目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:

Novell ZENworks Desktop Management 7.ZDM7 SP1 Imaging

Novell Novell ZENworks 7 SP1 Hot patch 3

http://download.novell.com/Download?buildid=GcDUupyC8Zg

Novell ZENworks Desktop Management 7.ZDM7 SP1

Novell Novell ZENworks 7 SP1 Hot patch 3

http://download.novell.com/Download?buildid=GcDUupyC8Zg

参考网址

来源: secure-support.novell.com

链接:https://secure-support.novell.com/KanisaPlatform/Publishing/650/3484245_f.SAL_Public.html

来源: secure-support.novell.com

链接:https://secure-support.novell.com/KanisaPlatform/Publishing/408/3563780_f.SAL_Public.html

来源: BID

名称: 22686

链接:http://www.securityfocus.com/bid/22686

来源: VUPEN

名称: ADV-2007-0712

链接:http://www.frsirt.com/english/advisories/2007/0712

来源: SECUNIA

名称: 24274

链接:http://secunia.com/advisories/24274

来源: OSVDB

名称: 33533

链接:http://osvdb.org/33533

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享