Summary
ZEN Load Balancer is prone to the following security vulnerabilities:
1. Multiple arbitrary command-execution vulnerabilities 2. Multiple information-disclosure vulnerabilities 3. An arbitrary file-upload vulnerability
An attacker can exploit these issues to execute arbitrary commands, upload arbitrary files to the affected computer, or disclose sensitive- information.
ZEN Load Balancer 2.0 and 3.0 rc1 are vulnerable.
References
Updated on 2015-03-25
Severity
Classification
-
CVSS Base Score: 9.0
AV:N/AC:L/Au:S/C:C/I:C/A:C
Related Vulnerabilities
- Atutor AChecker Multiple SQL Injection and XSS Vulnerabilities
- Apache Tomcat/JBoss EJBInvokerServlet / JMXInvokerServlet (RMI over HTTP) Marshalled Object Remote Code Execution
- Athena Web Registration remote command execution flaw
- b2Evolution title SQL Injection
- ArticleFR CMS Multiple Vulnerabilities - Jan15