Emc

Avamar Server

13 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.23%
  • Veröffentlicht 05.01.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:14:45

An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Appliance 2.0. A remote unauthenticated malicious user can potentially bypass ...

  • EPSS 2.35%
  • Veröffentlicht 05.01.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:14:45

An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Appliance 2.0. A remote authenticated malicious user with low privileges could...

  • EPSS 3.77%
  • Veröffentlicht 05.01.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:14:45

An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Appliance 2.0. A remote authenticated malicious user with low privileges could...

  • EPSS 2.97%
  • Veröffentlicht 21.06.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In EMC Avamar Server Software 7.3.1-125, 7.3.0-233, 7.3.0-226, 7.2.1-32, 7.2.1-31, 7.2.0-401, an unauthenticated remote attacker may potentially bypass the authentication process to gain access to the system maintenance page. This may be exploited by...

  • EPSS 2.26%
  • Veröffentlicht 21.06.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In EMC Avamar Server Software 7.4.1-58, 7.4.0-242, 7.3.1-125, 7.3.0-233, 7.3.0-226, an unauthorized attacker may leverage the file upload feature of the system maintenance page to load a maliciously crafted file to any directory which could allow the...

  • EPSS 0.04%
  • Veröffentlicht 21.09.2016 02:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 use weak permissions for unspecified directories, which allows local users to obtain root access by replacing a script with a Trojan horse program.

  • EPSS 0.07%
  • Veröffentlicht 21.09.2016 02:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 allow local users to obtain root access via a crafted parameter to a command that is available in the sudo configuration.

  • EPSS 0.04%
  • Veröffentlicht 21.09.2016 02:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 allow local users to obtain root privileges by leveraging admin access and entering a sudo command.

  • EPSS 0.18%
  • Veröffentlicht 21.09.2016 02:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 use the same encryption key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms and obta...

  • EPSS 1.45%
  • Veröffentlicht 21.09.2016 02:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 rely on client-side authentication, which allows remote attackers to spoof clients and read backup data via a modified client agent.