PT-2017-18061 · Emc · Emc Data Protection Advisor

Published

2017-07-09

·

Updated

2017-08-25

·

CVE-2017-8003

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions EMC Data Protection Advisor versions prior to 6.4
Description The issue allows a remote authenticated high privileged user to potentially access unauthorized information from the underlying OS server. This can be achieved by supplying specially crafted strings in input parameters of the application.
Recommendations For versions prior to 6.4, update to version 6.4 or later to resolve the issue.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-8003
ZDI-17-711

Affected Products

Emc Data Protection Advisor