Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:o:emc:isilon_onefs:*:*:*:*:*:*:*:*", "matchCriteriaId": "6DBE16CA-46F6-4E5C-B361-67074B1771F1", "versionEndIncluding": "7.1.1.0", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.1.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "A669BE6B-726F-4F34-A009-798E32FF6895", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.1.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "4AE74624-A44D-4837-AD36-DBF3E93D5ED9", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.1.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "47CBA2E5-6E46-4922-B56B-3F8C578074B1", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.1.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "90C22C93-9069-406E-9A14-03F20AD34D11", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.2.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "0E8AF3E1-FE57-40B9-95DD-4E4C8EB578CB", "vulnerable": true}, {"criteria": "cpe:2.3:o:emc:isilon_onefs:7.2.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "7F551F88-3176-4E92-AE7A-FCAB3A220A45", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "The log-gather implementation in the web administration interface in EMC Isilon OneFS 6.5.x.x through 7.1.1.x before 7.1.1.5 and 7.2.0.x before 7.2.0.2 allows remote authenticated users to execute arbitrary commands with root privileges via unspecified vectors."}, {"lang": "es", "value": "La implementaci\u00f3n log-gather en la interfaz de la administraci\u00f3n web en EMC Isilon OneFS 6.5.x.x hasta 7.1.1.x anterior a 7.1.1.5 y 7.2.0.x anterior a 7.2.0.2 permite a usuarios remotos autenticados ejecutar comandos arbitrarios con privilegios root a trav\u00e9s de vectores no especificados."}], "id": "CVE-2015-4525", "lastModified": "2025-04-12T10:46:40.837", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": {"accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "SINGLE", "availabilityImpact": "COMPLETE", "baseScore": 9.0, "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "vectorString": "AV:N/AC:L/Au:S/C:C/I:C/A:C", "version": "2.0"}, "exploitabilityScore": 8.0, "impactScore": 10.0, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}]}, "published": "2015-07-04T10:59:03.153", "references": [{"source": "security_alert@emc.com", "url": "http://seclists.org/bugtraq/2015/Jul/11"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://seclists.org/bugtraq/2015/Jul/11"}], "sourceIdentifier": "security_alert@emc.com", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "CWE-77"}], "source": "nvd@nist.gov", "type": "Primary"}]}