EMC kayıtları
emc üreticisine ait 415 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 5 · %1,2
- Pre-auth RCE
- 51
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')67
- CWE-264 Permissions, Privileges, and Access Controls60
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor36
- CWE-20 Improper Input Validation33
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer21
- CWE-287 Improper Authentication18
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
415 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
59Planlayın | CVE-2011-0647Silahlaştırılmış | The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows reemc · replication manager · CWE-20 | Kritik10,0 | — | %63,7 | 10 Şub 2011 |
52Planlayın | CVE-2018-1235Kavram kanıtı | Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3, contain a command injection vulnerability.emc · recoverpoint · CWE-78 | Kritik9,8 | — | %42,9 | 29 May 2018 |
52Planlayın | CVE-2009-2754Kavram kanıtı | Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka poribm · informix dynamic server · CWE-189 | Kritik10,0 | — | %40,1 | 5 Mar 2010 |
47Planlayın | CVE-2014-0644Silahlaştırılmış | EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML emc · cloud tiering appliance software · CWE-200 | Yüksek7,8 | — | %53,3 | 16 Nis 2014 |
47Planlayın | CVE-2013-0928Silahlaştırılmış | The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to executemc · alphastor · CWE-78 | Kritik9,3 | — | %34,3 | 21 Oca 2013 |
47Planlayın | CVE-2012-2288Silahlaştırılmış | Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote aemc · networker · CWE-134 | Kritik9,3 | — | %33,1 | 4 Eyl 2012 |
46Planlayın | CVE-2013-0946Kavram kanıtı | Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary codeemc · alphastor · CWE-119 | Kritik9,3 | — | %28,5 | 10 May 2013 |
45Planlayın | CVE-2012-2515Silahlaştırılmış | Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTemc · captiva quickscan pro · CWE-119 | Kritik9,3 | — | %27,6 | 4 Tem 2012 |
45Planlayın | CVE-2013-6810Kavram kanıtı | The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Neemc · connectrix manager · CWE-94 | Kritik10,0 | — | %17,0 | 12 Ara 2013 |
44Planlayın | CVE-2008-3685İstismar yok | Directory traversal vulnerability in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, poemc · documentum applicationxtender workflow manager · CWE-22 | Kritik10,0 | — | %12,9 | 22 Eki 2009 |
43Planlayın | CVE-2010-0620Kavram kanıtı | Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attackeremc · homebase server · CWE-22 | Kritik9,3 | — | %19,5 | 24 Şub 2010 |
43Planlayın | CVE-2011-2738İstismar yok | Multiple unspecified vulnerabilities in Cisco Unified Service Monitor before 8.6, as used in Unified Operations Manager before 8.6 and Ciscocisco · unified service monitor | Kritik10,0 | — | %11,0 | 19 Eyl 2011 |
42Planlayın | CVE-2011-1741İstismar yok | Stack-based buffer overflow in ftserver.exe in the OpenText Hummingbird Client Connector, as used in the Indexing Server in EMC Documentum eemc · documentum eroom · CWE-119 | Kritik10,0 | — | %8,2 | 19 Tem 2011 |
42Planlayın | CVE-2008-5419İstismar yok | Stack-based buffer overflow in SAN Manager Master Agent service (aka msragent.exe) in EMC Control Center 5.2 SP5 and 6.0 allows remote attacemc · control center · CWE-119 | Kritik10,0 | — | %7,7 | 10 Ara 2008 |
42Planlayın | CVE-2008-3684İstismar yok | Heap-based buffer overflow in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, possibly emc · documentum applicationxtender · CWE-119 | Kritik10,0 | — | %5,6 | 22 Eki 2009 |
42Planlayın | CVE-2009-1119İstismar yok | Multiple heap-based buffer overflows in EMC RepliStor 6.2 before SP5 and 6.3 before SP2 allow remote attackers to execute arbitrary code viaemc · replistor · CWE-119 | Kritik10,0 | — | %5,4 | 15 Nis 2009 |
42Planlayın | CVE-2007-5323İstismar yok | The RepliStor Server Service in EMC Replistor 6.1.3 allows remote attackers to execute arbitrary code via a size value that causes RepliStoremc · replistor · CWE-119 | Kritik10,0 | — | %5,4 | 10 Eki 2007 |
41Planlayın | CVE-2016-0916İstismar yok | EMC NetWorker 8.2.1.x and 8.2.2.x before 8.2.2.6 and 9.x before 9.0.0.6 mishandles authentication, which allows remote attackers to execute emc · networker · CWE-287 | Kritik9,8 | — | %7,7 | 9 Haz 2016 |
41Planlayın | CVE-2017-4984İstismar yok | In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, an unauthenticated remote attacker may emc · vnx2 firmware · CWE-77 | Kritik9,8 | — | %6,6 | 19 Haz 2017 |
41Planlayın | CVE-2017-2767İstismar yok | EMC Network Configuration Manager (NCM) 9.3.x, EMC Network Configuration Manager (NCM) 9.4.0.x, EMC Network Configuration Manager (NCM) 9.4.emc · smarts network configuration manager · CWE-287 | Kritik9,8 | — | %5,8 | 3 Şub 2017 |
41Planlayın | CVE-2018-15764İstismar yok | Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper configurations of triggereemc · esrs policy manager | Kritik9,8 | — | %5,3 | 28 Eyl 2018 |
41Planlayın | CVE-2009-0311İstismar yok | The Backbone service (ftbackbone.exe) in EMC AutoStart before 5.3 SP2 allows remote attackers to execute arbitrary code via a packet with a emc · autostart · CWE-20 | Kritik10,0 | — | %4,7 | 27 Oca 2009 |
41Planlayın | CVE-2006-3892İstismar yok | The Management Console server in EMC NetWorker (formerly Legato NetWorker) 7.3.2 before Jumbo Update 1 uses weak authentication, which allowemc · networker | Kritik10,0 | — | %4,6 | 2 Mar 2007 |
41Planlayın | CVE-2015-0545İstismar yok | EMC Unisphere for VMAX 8.x before 8.0.3.4 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute emc · unisphere | Kritik10,0 | — | %4,5 | 29 Haz 2015 |
41Planlayın | CVE-2015-0546İstismar yok | EMC Unified Infrastructure Manager/Provisioning (UIM/P) 4.1 allows remote attackers to bypass LDAP authentication by providing a valid accouemc · unified infrastructure manager\/provisioning · CWE-264 | Kritik10,0 | — | %3,3 | 17 Haz 2015 |
- CVE-2011-064759Planlayın
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows re
KritikCVSS 10,0SilahlaştırılmışEPSS %64emc · replication manager10 Şub 2011
- CVE-2018-123552Planlayın
Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3, contain a command injection vulnerability.
KritikCVSS 9,8Kavram kanıtıEPSS %43emc · recoverpoint29 May 2018
- CVE-2009-275452Planlayın
Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka por
KritikCVSS 10,0Kavram kanıtıEPSS %40ibm · informix dynamic server5 Mar 2010
- CVE-2014-064447Planlayın
EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML
YüksekCVSS 7,8SilahlaştırılmışEPSS %53emc · cloud tiering appliance software16 Nis 2014
- CVE-2013-092847Planlayın
The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to execut
KritikCVSS 9,3SilahlaştırılmışEPSS %34emc · alphastor21 Oca 2013
- CVE-2012-228847Planlayın
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote a
KritikCVSS 9,3SilahlaştırılmışEPSS %33emc · networker4 Eyl 2012
- CVE-2013-094646Planlayın
Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary code
KritikCVSS 9,3Kavram kanıtıEPSS %29emc · alphastor10 May 2013
- CVE-2012-251545Planlayın
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HT
KritikCVSS 9,3SilahlaştırılmışEPSS %28emc · captiva quickscan pro4 Tem 2012
- CVE-2013-681045Planlayın
The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Ne
KritikCVSS 10,0Kavram kanıtıEPSS %17emc · connectrix manager12 Ara 2013
- CVE-2008-368544Planlayın
Directory traversal vulnerability in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, po
KritikCVSS 10,0İstismar yokEPSS %13emc · documentum applicationxtender workflow manager22 Eki 2009
- CVE-2010-062043Planlayın
Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attacker
KritikCVSS 9,3Kavram kanıtıEPSS %19emc · homebase server24 Şub 2010
- CVE-2011-273843Planlayın
Multiple unspecified vulnerabilities in Cisco Unified Service Monitor before 8.6, as used in Unified Operations Manager before 8.6 and Cisco
KritikCVSS 10,0İstismar yokEPSS %11cisco · unified service monitor19 Eyl 2011
- CVE-2011-174142Planlayın
Stack-based buffer overflow in ftserver.exe in the OpenText Hummingbird Client Connector, as used in the Indexing Server in EMC Documentum e
KritikCVSS 10,0İstismar yokEPSS %8emc · documentum eroom19 Tem 2011
- CVE-2008-541942Planlayın
Stack-based buffer overflow in SAN Manager Master Agent service (aka msragent.exe) in EMC Control Center 5.2 SP5 and 6.0 allows remote attac
KritikCVSS 10,0İstismar yokEPSS %8emc · control center10 Ara 2008
- CVE-2008-368442Planlayın
Heap-based buffer overflow in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, possibly
KritikCVSS 10,0İstismar yokEPSS %6emc · documentum applicationxtender22 Eki 2009
- CVE-2009-111942Planlayın
Multiple heap-based buffer overflows in EMC RepliStor 6.2 before SP5 and 6.3 before SP2 allow remote attackers to execute arbitrary code via
KritikCVSS 10,0İstismar yokEPSS %5emc · replistor15 Nis 2009
- CVE-2007-532342Planlayın
The RepliStor Server Service in EMC Replistor 6.1.3 allows remote attackers to execute arbitrary code via a size value that causes RepliStor
KritikCVSS 10,0İstismar yokEPSS %5emc · replistor10 Eki 2007
- CVE-2016-091641Planlayın
EMC NetWorker 8.2.1.x and 8.2.2.x before 8.2.2.6 and 9.x before 9.0.0.6 mishandles authentication, which allows remote attackers to execute
KritikCVSS 9,8İstismar yokEPSS %8emc · networker9 Haz 2016
- CVE-2017-498441Planlayın
In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, an unauthenticated remote attacker may
KritikCVSS 9,8İstismar yokEPSS %7emc · vnx2 firmware19 Haz 2017
- CVE-2017-276741Planlayın
EMC Network Configuration Manager (NCM) 9.3.x, EMC Network Configuration Manager (NCM) 9.4.0.x, EMC Network Configuration Manager (NCM) 9.4.
KritikCVSS 9,8İstismar yokEPSS %6emc · smarts network configuration manager3 Şub 2017
- CVE-2018-1576441Planlayın
Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper configurations of triggere
KritikCVSS 9,8İstismar yokEPSS %5emc · esrs policy manager28 Eyl 2018
- CVE-2009-031141Planlayın
The Backbone service (ftbackbone.exe) in EMC AutoStart before 5.3 SP2 allows remote attackers to execute arbitrary code via a packet with a
KritikCVSS 10,0İstismar yokEPSS %5emc · autostart27 Oca 2009
- CVE-2006-389241Planlayın
The Management Console server in EMC NetWorker (formerly Legato NetWorker) 7.3.2 before Jumbo Update 1 uses weak authentication, which allow
KritikCVSS 10,0İstismar yokEPSS %5emc · networker2 Mar 2007
- CVE-2015-054541Planlayın
EMC Unisphere for VMAX 8.x before 8.0.3.4 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute
KritikCVSS 10,0İstismar yokEPSS %4emc · unisphere29 Haz 2015
- CVE-2015-054641Planlayın
EMC Unified Infrastructure Manager/Provisioning (UIM/P) 4.1 allows remote attackers to bypass LDAP authentication by providing a valid accou
KritikCVSS 10,0İstismar yokEPSS %3emc · unified infrastructure manager\/provisioning17 Haz 2015