CVE-2014-2276: Emc Connectrix Manager

Medium severity, CVSS 5.0. EPSS: 2.1% chance of exploitation in the next 30 days.

The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file.

Affected products

  • Emc Connectrix Manager: up to and including 12.1.2

Published 2014-03-21. Last modified 2026-06-17.