CVE-2016-6649
N/A
N/A
Summary
EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 are affected by multiple command injection vulnerabilities where a malicious administrator with configuration privileges may bypass the user interface and escalate his privileges to root.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | EMC RecoverPoint and EMC RecoverPoint for Virtual Machines EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 | EMC RecoverPoint and EMC RecoverPoint for Virtual Machines EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 | affected |
Weaknesses
- command injection vulnerabilities
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/archive/1/540058/30/0/threaded
- http://www.securitytracker.com/id/1037727
- http://www.securityfocus.com/bid/95821
References
- http://www.securityfocus.com/archive/1/540058/30/0/threaded
- http://www.securitytracker.com/id/1037727
- http://www.securityfocus.com/bid/95821
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.