PT-2017-9007 · Emc · Emc Recoverpoint+1
Publicado
2017-02-03
·
Atualizado
2017-03-08
·
CVE-2016-6649
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
EMC RecoverPoint versions prior to 4.4.1.1
EMC RecoverPoint for Virtual Machines versions prior to 5.0
Description
The issue allows a malicious administrator with configuration privileges to bypass the user interface and escalate privileges to root through multiple command injection vulnerabilities.
Recommendations
For EMC RecoverPoint versions prior to 4.4.1.1, update to version 4.4.1.1 or later.
For EMC RecoverPoint for Virtual Machines versions prior to 5.0, update to version 5.0 or later.
Correção
Command Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Emc Recoverpoint
Dell Recoverpoint For Virtual Machines