Release date:
Updated on:
Affected Systems:
IBM Scale Out Network Attached Storage (SONAS) 1.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 54707
Cve id: CVE-2012-2163
Scale Out Network Attached Storage provides unprecedented scalability for large Storage infrastructures that require high availability.
IBM Scale Out Network Attached Storage versions 1.1 to 1.3.1 have the remote command execution vulnerability in CLI and GUI implementation, attackers can exploit these vulnerabilities to execute arbitrary Shell commands in a system with root user permissions.
<* Source: vendor
Link: http://secunia.com/advisories/50071/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ers.ibm.com/