Search: "emc"

719 CVEs found

EMC RSA Security SiteKey does not set the secure qualifier on the SiteKey Flash token (aka the PassMark Flash shared object), which might allow remote attackers to obtain the token via HTTP.

Published: 2007-04-30
Products: 1
Vendors:
emc

The PIIX4 power management subsystem in EMC VMware Workstation 5.5.3.34685 and VMware Server 1.0.1.29996 allows local users to write to arbitrary memory locations via a crafted poke to I/O port 0x1004...

Published: 2007-05-04
Products: 3
Vendors:
vmware
CVE-2007-4058
4.3 MEDIUM

Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll 2.2.5.42958 in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the ...

Published: 2007-07-30
Products: 1
Vendors:
emc
CVE-2007-4059
5.8 MEDIUM

Absolute path traversal vulnerability in a certain ActiveX control in IntraProcessLogging.dll 5.5.3.42958 in EMC VMware allows remote attackers to create or overwrite arbitrary files via a full pathna...

Published: 2007-07-30
Products: 1
Vendors:
vmware

Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first two ar...

Published: 2007-08-03
Products: 1
Vendors:
emc

Stack-based buffer overflow in the NetWorker Remote Exec Service (nsrexecd.exe) in EMC Software NetWorker 7.x.x allows remote attackers to execute arbitrary code via a (1) poll or (2) kill request wit...

Published: 2007-08-21
Products: 5
Vendors:
emc
CVE-2007-0061
10.0 HIGH

The DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075...

Published: 2007-09-21
Products: 16
Vendors:
canonical vmware
CVE-2007-0062
10.0 HIGH

Integer overflow in the ISC dhcpd 3.0.x before 3.0.7 and 3.1.x before 3.1.1; and the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0....

Published: 2007-09-21
Products: 19
Vendors:
vmware
CVE-2007-0063
10.0 HIGH

Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE bef...

Published: 2007-09-21
Products: 16
Vendors:
canonical vmware
CVE-2007-4496
6.5 MEDIUM

Unspecified vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 B...

Published: 2007-09-21
Products: 10
Vendors:
canonical vmware
CVE-2007-4497
5.5 MEDIUM

Unspecified vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 B...

Published: 2007-09-21
Products: 10
Vendors:
canonical vmware
CVE-2007-5023
6.9 MEDIUM

Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, A...

Published: 2007-09-21
Products: 9
Vendors:
canonical vmware

EMC VMware Server before 1.0.4 Build 56528 writes passwords in cleartext to unspecified log files, which allows local users to obtain sensitive information by reading these files, a different vulnerab...

Published: 2007-09-21
Products: 1
Vendors:
emc

Unspecified vulnerability in EMC VMware ACE before 1.0.3 Build 54075 allows attackers to have an unknown impact via an unspecified manipulation of "images stored in virtual machines downloaded by the ...

Published: 2007-09-21
Products: 1
Vendors:
vmware
CVE-2007-5323
10.0 HIGH

The RepliStor Server Service in EMC Replistor 6.1.3 allows remote attackers to execute arbitrary code via a size value that causes RepliStor to create a smaller buffer than expected, which triggers a ...

Published: 2007-10-11
Products: 1
Vendors:
emc

SQL injection vulnerability in emc.asp in emagiC CMS.Net 4.0 allows remote attackers to execute arbitrary SQL commands via the pageId parameter.

Published: 2007-11-01
Products: 1
Vendors:
emagic-cms
CVE-2008-0656
10.0 HIGH

Unrestricted file upload vulnerability in dmclTrace.jsp in EMC Documentum Administrator 5.3.0.313 and Webtop 5.3.0.317 allows remote attackers to overwrite arbitrary files via the filename attribute.

Published: 2008-02-07
Products: 7
Vendors:
emc

Multiple heap-based buffer overflows in EMC RepliStor 6.2 SP2, and possibly earlier versions, allow remote attackers to execute arbitrary code via crafted compressed data.

Published: 2008-02-21
Products: 1
Vendors:
emc

Stack-based buffer overflow in the File System Manager for EMC DiskXtender 6.20.060 allows remote authenticated users to execute arbitrary code via a crafted request to the RPC interface.

Published: 2008-04-14
Products: 1
Vendors:
emc

Format string vulnerability in EMC DiskXtender MediaStor 6.20.060 allows remote authenticated users to execute arbitrary code via a crafted message to the RPC interface.

Published: 2008-04-14
Products: 1
Vendors:
emc