Arbitrary Code Execution via Unrestricted File Upload in EMC M&R and ViPR SRM

Arbitrary Code Execution via Unrestricted File Upload in EMC M&R and ViPR SRM

CVE-2015-0515 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

Unrestricted file upload vulnerability in EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 allows remote authenticated users to execute arbitrary code by uploading and then accessing an executable file.

Learn more about our User Device Pen Test.