PT-2016-4467 · Emc+1 · Emc Networker Module For Microsoft+2
Published
2016-10-05
·
Updated
2017-07-30
·
CVE-2016-0913
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
EMC Replication Manager versions prior to 5.5.3.0 01-PatchHotfix
EMC Network Module for Microsoft version 3.x
EMC Networker Module for Microsoft versions prior to 8.2.3.6
Description
The issue allows remote EMC Replication Manager servers to execute arbitrary commands by placing a crafted script in an SMB share.
Recommendations
For EMC Replication Manager versions prior to 5.5.3.0 01-PatchHotfix, update to version 5.5.3.0 01-PatchHotfix or later.
For EMC Network Module for Microsoft version 3.x, consider upgrading to a later version.
For EMC Networker Module for Microsoft versions prior to 8.2.3.6, update to version 8.2.3.6 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Emc Networker Module For Microsoft
Emc Replication Manager
Microsoft