PT-2013-4271 · Emc · Avamar Virtual Edition+1
Published
2013-07-18
·
Updated
2013-07-29
·
CVE-2013-3275
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
EMC Avamar Server and Avamar Virtual Edition versions prior to 7.0
Description
The issue makes it easier for remote attackers to obtain sensitive information via a crafted web site, related to cross frame scripting vulnerabilities, due to the improper restriction of use of FRAME elements.
Recommendations
For versions prior to 7.0, update to version 7.0 or later to resolve the issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Avamar Virtual Edition
Emc Avamar Server