CVE-2014-2626 Information

Description

Directory traversal vulnerability in the toServerObject function in HP Network Virtualization 8.6 (aka Shunra Network Virtualization) allows remote attackers to create files and consequently execute arbitrary code via crafted input aka ZDI-CAN-2024.

Reference

http://secunia.com/advisories/60418 http://www.securitytracker.com/id/1030624 http://zerodayinitiative.com/advisories/ZDI-14-268/ https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04374202

Share on: