CVE-2015-7818 Information
Feb 14, 2021
cve
Description
The administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows local users to execute arbitrary JSP code with SYSTEM privileges by using the Apache Axis AdminService deployment method to install a .jsp file.
Reference
http://www.zerodayinitiative.com/advisories/ZDI-15-551/ https://support.lenovo.com/us/en/product_security/len_2015_074
Share on: