Vulnerability index

Browse CVEs

300 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rsa Certificate Manager HIGH 7.8
CVE-2015-4546

Directory traversal vulnerability in EMC RSA OneStep 6.9 before build 559, as used in RSA Certificate Manager and RSA Registration Manager through 6.…

Fix: after 6.9
Fix from $1,950 2015-10-02
Rsa Archer Grc MEDIUM 6.5
CVE-2015-4542

EMC RSA Archer GRC 5.x before 5.5.3 allows remote authenticated users to bypass intended access restrictions, and read or modify Discussion Forum Fie…

No fix yet
Fix from $1,600 2015-09-26
Documentum Content Server HIGH 9.0
CVE-2015-4544

EMC Documentum Content Server before 7.1P20 and 7.2.x before 7.2P04 does not properly verify authorization for dm_job object access, which allows rem…

No fix yet
Fix from $1,950 2015-09-04
Atmos HIGH 7.5
CVE-2015-4538

The XML parser in EMC Atmos before 2.2.3.426 and 2.3.x before 2.3.1.0 allows remote authenticated users to read arbitrary files or cause a denial of …

No fix yet
Fix from $1,950 2015-09-04
Documentum Content Server HIGH 7.5
CVE-2015-4535

Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, w…

Mitigation only
Fix from $1,950 2015-08-20
Documentum Content Server HIGH 9.0
CVE-2015-4534

Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 al…

Mitigation only
Fix from $1,950 2015-08-20
Documentum Content Server HIGH 9.0
CVE-2015-4533

EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check author…

Mitigation only
Fix from $1,950 2015-08-20
Documentum Content Server HIGH 9.0
CVE-2015-4532

EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check author…

Mitigation only
Fix from $1,950 2015-08-20
Documentum Content Server HIGH 9.0
CVE-2015-4531

EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check author…

Mitigation only
Fix from $1,950 2015-08-20
Documentum Administrator MEDIUM 6.8
CVE-2015-4530

Cross-site request forgery (CSRF) vulnerability in EMC Documentum WebTop before 6.8P01, Documentum Administrator through 7.2, Documentum Digital Asse…

Fix: after 7.2
Fix from $1,600 2015-08-20
Rsa Archer Egrc MEDIUM 6.8
CVE-2015-0542

Multiple cross-site request forgery (CSRF) vulnerabilities in EMC RSA Archer GRC 5.5 SP1 before P3 allow remote attackers to hijack the authenticatio…

Mitigation only
Fix from $1,600 2015-08-20
Avamar Server HIGH 7.8
CVE-2015-4527

Directory traversal vulnerability in EMC Avamar Server 7.x before 7.1.2 and Avamar Virtual Addition (AVE) 7.x before 7.1.2 allows remote attackers to…

Mitigation only
Fix from $1,950 2015-07-23
Documentum Administrator MEDIUM 5.8
CVE-2015-4529

Open redirect vulnerability in EMC Documentum WebTop before 6.8P02, Documentum Administrator before 7.2P01, Documentum Digital Assets Manager through…

Fix: after 7.2
Fix from $1,600 2015-07-16
Recoverpoint For Virtual Machines HIGH 7.2
CVE-2015-4526

EMC RecoverPoint for Virtual Machines (VMs) 4.2 allows local users to obtain root-shell access by bypassing the Installation Manager Boxmgmt CLI inte…

Mitigation only
Fix from $1,950 2015-07-10
Secure Remote Services HIGH 9.3
CVE-2015-0544

EMC Secure Remote Services Virtual Edition (ESRS VE) 3.x before 3.06 does not properly generate random values for session cookies, which makes it eas…

Mitigation only
Fix from $1,950 2015-07-05
Secure Remote Services MEDIUM 5.8
CVE-2015-0543

EMC Secure Remote Services Virtual Edition (ESRS VE) 3.x before 3.06 does not properly verify X.509 certificates from SSL servers, which allows man-i…

Mitigation only
Fix from $1,600 2015-07-05
Documentum Administrator MEDIUM 6.5
CVE-2015-4524

Unrestricted file upload vulnerability in EMC Documentum WebTop 6.7SP1 before P31, 6.7SP2 before P23, and 6.8 before P01; Documentum Administrator 6.…

Mitigation only
Fix from $1,600 2015-07-04
Isilon Onefs HIGH 9.0
CVE-2015-4525

The log-gather implementation in the web administration interface in EMC Isilon OneFS 6.5.x.x through 7.1.1.x before 7.1.1.5 and 7.2.0.x before 7.2.0…

Fix: after 7.1.1.0
Fix from $1,950 2015-07-04
Unisphere HIGH 10.0
CVE-2015-0545

EMC Unisphere for VMAX 8.x before 8.0.3.4 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2015-06-29
Documentum Thumbnail Server HIGH 8.5
CVE-2015-0550

Directory traversal vulnerability in EMC Documentum Thumbnail Server 6.7SP1 before P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 be…

Mitigation only
Fix from $1,950 2015-06-28
Unified Infrastructure Manager\/provisioning HIGH 10.0
CVE-2015-0546

EMC Unified Infrastructure Manager/Provisioning (UIM/P) 4.1 allows remote attackers to bypass LDAP authentication by providing a valid account name.

Mitigation only
Fix from $1,950 2015-06-17
Document Sciences Xpression MEDIUM 6.5
CVE-2015-0540

SQL injection vulnerability in the xAdmin interface in EMC Document Sciences xPression 4.2 before P44 and 4.5 SP1 before P03 allows remote authentica…

Mitigation only
Fix from $1,600 2015-05-25
Autostart HIGH 9.3
CVE-2015-0538EPSS 7%

ftagent.exe in EMC AutoStart 5.4.x and 5.5.x before 5.5.0.508 HF4 allows remote attackers to execute arbitrary commands via crafted packets.

Fix: after 5.5.0
Fix from $1,950 2015-05-07
Sourceone Email Management MEDIUM 5.0
CVE-2015-0531

EMC SourceOne Email Management before 7.2 does not have a lockout mechanism for invalid login attempts, which makes it easier for remote attackers to…

Fix: after 7.1
Fix from $1,600 2015-05-07
Rsa Identity Management And Governance HIGH 7.5
CVE-2015-0532

EMC RSA Identity Management and Governance (IMG) 6.9 before P04 and 6.9.1 before P01 does not properly restrict password resets, which allows remote …

No fix yet
Fix from $1,950 2015-05-01
Networker HIGH 7.2
CVE-2015-0530

Buffer overflow in an unspecified function in nsr_render_log in EMC NetWorker before 8.0.4.3, 8.1.x before 8.1.2.6, and 8.2.x before 8.2.1.2 allows l…

Fix: after 8.0.4.3
Fix from $1,950 2015-04-17
Powerpath Virtual Appliance MEDIUM 5.0
CVE-2015-0529

EMC PowerPath Virtual Appliance (aka vApp) before 2.0 has default passwords for the (1) emcupdate and (2) svcuser accounts, which makes it easier for…

Fix: after 1.2
Fix from $1,600 2015-04-05
Isilon Onefs HIGH 7.2
CVE-2015-0528

The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local…

Fix: after 7.0.2.12
Fix from $1,950 2015-03-29
Secure Remote Services HIGH 7.5
CVE-2015-0525

The Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote attackers to execute arbitrary O…

No fix yet
Fix from $1,950 2015-03-12
Secure Remote Services HIGH 7.5
CVE-2015-0524

SQL injection vulnerability in the Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote a…

No fix yet
Fix from $1,950 2015-03-12