Unrestricted file upload vulnerability in EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 allows remote authenticated users to execute arbitrary code by uploading and then accessing an executable file.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0515
Reference (s):
- BID:72256
- URL: http://www.securityfocus.com/bid/72256
- BUGTRAQ:20150120 ESA-2015-004: EMC M&R (Watch4Net) Multiple Vulnerabilities
- URL: http://archives.neohapsis.com/archives/bugtraq/2015-01/0092.html
- SECTRACK:1031567

