Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.8
CVE-2013-6078
The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 uses the Dual Elliptic Curve Deterministic Random …
Rsa Bsafe Toolkits
Mitigation only
HIGH 7.5
CVE-2014-2503
The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to…
Documentum Digital Asset Manager
No fix yet
HIGH 9.0
CVE-2014-2504
EMC Documentum D2 3.1 before P20, 3.1 SP1 before P02, 4.0 before P10, 4.1 before P13, and 4.2 before P01 allows remote authenticated users to bypass …
Documentum D2
Mitigation only
MEDIUM 6.9
CVE-2014-0646
The runtime WS component in the server in EMC RSA Access Manager 6.1.3 before 6.1.3.39, 6.1.4 before 6.1.4.22, 6.2.0 before 6.2.0.11, and 6.2.1 befor…
Rsa Access Manager
Mitigation only
HIGH 7.8
CVE-2014-0644EPSS 53%
EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML external …
Cloud Tiering Appliance Software
Mitigation only
HIGH 7.7
CVE-2014-0633
The GUI in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 does not properly validate session-timeout values, which might make it easier for remote att…
Vplex Geosynchrony
Mitigation only
HIGH 7.5
CVE-2014-0635
Session fixation vulnerability in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 allows remote attackers to hijack web sessions via unspecified vector…
Vplex Geosynchrony
Mitigation only
MEDIUM 6.0
CVE-2014-0634
EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 does not include the HTTPOnly flag in a Set-Cookie header for an unspecified cookie, which makes it eas…
Vplex Geosynchrony
Mitigation only
HIGH 9.0
CVE-2014-0632
Directory traversal vulnerability in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 allows remote authenticated users to execute arbitrary code via un…
Vplex Geosynchrony
Mitigation only
HIGH 8.5
CVE-2014-0629
EMC Documentum TaskSpace (TSP) 6.7SP1 before P25 and 6.7SP2 before P11 does not properly handle the interaction between the dm_world group and the dm…
Documentum Taskspace
Mitigation only
HIGH 9.0
CVE-2014-0622
The web service in EMC Documentum Foundation Services (DFS) 6.5 through 6.7 before 6.7 SP1 P22, 6.7 SP2 before P08, 7.0 before P12, and 7.1 before P0…
Documentum Foundation Services
Mitigation only
HIGH 10.0
CVE-2013-6810EPSS 17%
The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Adv…
Connectrix Manager
Mitigation only
MEDIUM 6.8
CVE-2013-6180
EMC RSA Security Analytics (SA) 10.x before 10.3, and RSA NetWitness NextGen 9.8, does not ensure that SA Core requests originate from the SA REST UI…
Rsa Netwitness Nextgen
Mitigation only
MEDIUM 6.8
CVE-2013-6173
Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Document Sciences xPression 4.1 SP1 before Patch 47, 4.2 before Patch 26, and 4.5 b…
Document Sciences Xpression
No fix yet
MEDIUM 6.5
CVE-2013-6176
Multiple SQL injection vulnerabilities in EMC Document Sciences xPression 4.1 SP1 before Patch 47, 4.2 before Patch 26, and 4.5 before Patch 05, as u…
Document Sciences Xpression
No fix yet
MEDIUM 5.8
CVE-2013-6174
Multiple open redirect vulnerabilities in xAdmin in EMC Document Sciences xPression 4.1 SP1 before Patch 47, 4.2 before Patch 26, and 4.5 before Patc…
Document Sciences Xpression
No fix yet
HIGH 7.5
CVE-2013-3280
EMC RSA Authentication Agent 7.1.x before 7.1.2 for Web for Internet Information Services has a fail-open design, which allows remote attackers to by…
Rsa Authentication Agent
Mitigation only
MEDIUM 6.0
CVE-2013-3276
EMC RSA Archer GRC 5.x before 5.4 allows remote authenticated users to bypass intended access restrictions and complete a login by leveraging a deact…
Rsa Archer Egrc
Mitigation only
MEDIUM 5.8
CVE-2013-3277
Open redirect vulnerability in EMC RSA Archer GRC 5.x before 5.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishin…
Rsa Archer Egrc
Mitigation only
MEDIUM 5.0
CVE-2013-3271
EMC RSA Authentication Agent for PAM 7.0 before 7.0.2.1 enforces the maximum number of login attempts within the PAM-enabled application codebase, in…
Rsa Authentication Agent
Mitigation only
HIGH 9.3
CVE-2013-0946EPSS 29%
Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary code via craf…
Alphastor
No fix yet
MEDIUM 5.8
CVE-2013-0939
EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Documentum Records Manager before 6.7 S…
Documentum Records Manager
Mitigation only
MEDIUM 5.8
CVE-2013-0937
Session fixation vulnerability in EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Docum…
Documentum Records Manager
Mitigation only
HIGH 7.5
CVE-2012-2292
The Silverlight cross-domain policy in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 does not restrict access to the A…
Rsa Archer Smartsuite
Mitigation only
MEDIUM 6.8
CVE-2012-2294
EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allow remote attackers to conduct clickjacking attacks via a crafted web…
Rsa Archer Smartsuite
Mitigation only
MEDIUM 6.5
CVE-2012-2293
Directory traversal vulnerability in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allows remote authenticated users t…
Rsa Archer Smartsuite
Mitigation only
HIGH 7.6
CVE-2013-0930
Buffer overflow in Drive Control Program (DCP) in EMC AlphaStor 4.0 before build 814 allows remote attackers to execute arbitrary code via vectors in…
Alphastor
Mitigation only
HIGH 9.3
CVE-2013-0928EPSS 34%
The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to execute arbitra…
Alphastor
No fix yet
HIGH 7.6
CVE-2013-0929
Format string vulnerability in the _vsnsprintf function in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote atta…
Alphastor
Mitigation only
HIGH 7.2
CVE-2012-2291
EMC Avamar Client 4.x, 5.x, and 6.x on HP-UX and Mac OS X, and the EMC Avamar plugin 4.x, 5.x, and 6.x for Oracle, uses world-writable permissions fo…
Avamar
Mitigation only