CNNVD-202507-699 Information

CNNVD ID

CNNVD-202507-699

CVE-2025-6802

  • CNNVD Published: 2025-07-07

Description (Chinese)

Marvell QConvergeConsole是美国Marvell公司的一款跨数据中心的统一适配器管理软件。 Marvell QConvergeConsole存在代码问题漏洞,该漏洞源于getFileFromURL方法未正确验证用户提供数据,可能导致远程代码执行。

Description (English)

Marvell QConvergeConsole is a United States-based multi-data centre integrated adapter management software. Marvell QConvergeConsole has a code problem loophole, which results from the GetFileFromURL method ’ s incorrect validation of data provided by users, which may lead to remote code execution.

Hazard Level

Low

Vulnerability Type

代码问题

Affected Vendor

Marwal Infotech

Published

2025-07-07

Last Modified

2026-02-24

References

https://www.zerodayinitiative.com/advisories/ZDI-25-464/

Share on: