Search: "emc"

719 CVEs found

Unspecified vulnerability in EMC Disk Library (EDL) before 3.2.7, 3.3.x before 3.3.2 epatch 8, and 4.0.x before 4.0.1 epatch 4 allows remote attackers to cause a denial of service (communication-modul...

Published: 2010-08-02
Products: 7
Vendors:
emc

The EMC Celerra Network Attached Storage (NAS) appliance accepts external network traffic to IP addresses intended for an intranet network within the appliance, which allows remote attackers to read, ...

Published: 2010-08-05
Products: 1
Vendors:
emc
CVE-2011-0321
6.4 MEDIUM

librpc.dll in nsrexecd in EMC NetWorker before 7.5 SP4, 7.5.3.x before 7.5.3.5, and 7.6.x before 7.6.1.2 does not properly mitigate the possibility of a spoofed localhost source IP address, which allo...

Published: 2011-02-01
Products: 28
Vendors:
emc
CVE-2011-0647
10.0 HIGH

The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary commands via the RunProg...

Published: 2011-02-10
Products: 6
Vendors:
emc

Unspecified vulnerability in EMC RSA Access Manager Server 5.5.x, 6.0.x, and 6.1.x allows remote attackers to access resources via unknown vectors.

Published: 2011-03-16
Products: 5
Vendors:
rsa

The service utility in EMC Avamar 5.x before 5.0.4 uses cleartext to transmit event details in (1) service requests and (2) e-mail messages, which might allow remote attackers to obtain sensitive info...

Published: 2011-03-16
Products: 3
Vendors:
emc

Unspecified vulnerability in EMC Avamar before 5.0.4-30 allows remote authenticated users to gain privileges via unknown vectors.

Published: 2011-03-16
Products: 3
Vendors:
emc

EMC Data Protection Advisor Collector 5.7 and 5.7.1 on Solaris SPARC platforms uses weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.

Published: 2011-03-28
Products: 3
Vendors:
oracle emc
CVE-2011-1421
6.9 MEDIUM

EMC NetWorker 7.5.x before 7.5.4.3 and 7.6.x before 7.6.1.5, when the client push feature is enabled, uses weak permissions for an unspecified file, which allows local users to gain privileges via unk...

Published: 2011-04-22
Products: 29
Vendors:
emc
CVE-2011-1422
4.3 MEDIUM

Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in EMC RSA Adaptive Authentication On-Premise (AAOP) 2.x, 5.7.x, and 6.x allows remote attackers to inject arbitrary web...

Published: 2011-04-22
Products: 6
Vendors:
emc

The default configuration of ExShortcut\Web.config in EMC SourceOne Email Management before 6.6 SP1, when the Mobile Services component is used, does not properly set the localOnly attribute of the tr...

Published: 2011-05-24
Products: 7
Vendors:
microsoft emc ibm
CVE-2011-1741
10.0 HIGH

Stack-based buffer overflow in ftserver.exe in the OpenText Hummingbird Client Connector, as used in the Indexing Server in EMC Documentum eRoom 7.x before 7.4.3.f and other products, allows remote at...

Published: 2011-07-19
Products: 3
Vendors:
emc
CVE-2011-0875
5.5 MEDIUM

Unspecified vulnerability in the EMCTL component in Oracle Database Server 11.1.0.7 and Oracle Enterprise Manager Grid Control 10.1.0.6, 10.2.0.5, and 11.1.0.1 allows remote authenticated users to aff...

Published: 2011-07-20
Products: 4
Vendors:
oracle
CVE-2011-0881
4.3 MEDIUM

Unspecified vulnerability in the EMCTL component in Oracle Database Server 10.2.0.3, 10.2.0.4, and 11.1.0.7, and Oracle Enterprise Manager Grid Control 10.1.0.6, allows remote attackers to affect inte...

Published: 2011-07-20
Products: 4
Vendors:
oracle

EMC Data Protection Advisor before 5.8.1 places cleartext account credentials in the DPA configuration file in unspecified circumstances, which might allow local users to obtain sensitive information ...

Published: 2011-08-01
Products: 8
Vendors:
emc
CVE-2011-1743
4.3 MEDIUM

Cross-site scripting (XSS) vulnerability in EMC Captiva eInput 2.1.1 before 2.1.1.37 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Published: 2011-08-01
Products: 1
Vendors:
emc
CVE-2011-1744
5.8 MEDIUM

EMC Captiva eInput 2.1.1 before 2.1.1.37 does not restrict the origin of calls to ActiveX functions, which allows remote attackers to read arbitrary files or cause a denial of service via a crafted we...

Published: 2011-08-01
Products: 1
Vendors:
emc

EMC RSA Adaptive Authentication On-Premise (AAOP) 6.0.2.1 SP1 Patch 2, SP1 Patch 3, SP2, SP2 Patch 1, and SP3 does not prevent reuse of authentication information during a session, which allows remote...

Published: 2011-08-18
Products: 5
Vendors:
emc

Multiple buffer overflows in EMC AutoStart 5.3.x and 5.4.x before 5.4.1 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by sending a crafted messa...

Published: 2011-08-23
Products: 5
Vendors:
emc

EMC Avamar 4.x, 5.0.x, and 6.0.x before 6.0.0-592 allows remote authenticated users to modify client data or obtain sensitive information about product activities by leveraging privileged access to a ...

Published: 2011-09-19
Products: 8
Vendors:
emc