CVE-2012-1843

N/A Unknown
Published: March 22, 2012 Modified: April 29, 2026
View on NVD

Description

Cross-site request forgery (CSRF) vulnerability in saveRestore.htm on the Quantum Scalar i500 tape library with firmware before i7.0.3 (604G.GS00100), also distributed as the Dell ML6000 tape library with firmware before A20-00 (590G.GS00100), allows remote attackers to hijack the authentication of users for requests that execute Linux commands via the fileName parameter, related to a "command-injection vulnerability."

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/80227
Source: cve@mitre.org
http://www.kb.cert.org/vuls/id/913483
Source: cve@mitre.org
US Government Resource
http://www.kb.cert.org/vuls/id/MAPG-8NNKN8
Source: cve@mitre.org
US Government Resource
http://www.kb.cert.org/vuls/id/MAPG-8NVRPY
Source: cve@mitre.org
US Government Resource
http://osvdb.org/80227
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/48403
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/48453
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/913483
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.kb.cert.org/vuls/id/MAPG-8NNKN8
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.kb.cert.org/vuls/id/MAPG-8NVRPY
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/74161
Source: af854a3a-2127-422b-91ae-364da2661108

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
1.1%
60th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

dell quantum