Vulnerability index

Browse CVEs

300 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Documentum Records Manager MEDIUM 5.8
CVE-2013-0939

EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Documentum Records Manager before 6.7 S…

Mitigation only
Fix from $1,600 2013-05-10
Documentum Records Manager MEDIUM 5.8
CVE-2013-0937

Session fixation vulnerability in EMC Documentum Webtop before 6.7 SP2, Documentum WDK before 6.7 SP2, Documentum Taskspace before 6.7 SP2, and Docum…

Mitigation only
Fix from $1,600 2013-05-10
Avamar HIGH 9.3
CVE-2013-0945

EMC Avamar Client before 6.1.101-89 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltNam…

Fix: after 6.1.101-87
Fix from $1,950 2013-05-03
Networker HIGH 7.2
CVE-2013-0940

The nsrpush process in the client in EMC NetWorker before 7.6.5.3 and 8.x before 8.0.1.4 sets weak permissions for unspecified files, which allows lo…

Fix: after 7.6.5.2
Fix from $1,950 2013-05-03
Smarts Network Configuration Manager HIGH 9.3
CVE-2013-2717

Multiple unspecified vulnerabilities in the System Management (aka SysAdmin) Console in EMC Smarts Network Configuration Manager (NCM) through 9.2 ha…

Fix: after 9.2
Fix from $1,950 2013-03-28
Smarts Network Configuration Manager HIGH 9.3
CVE-2013-0935

EMC Smarts Network Configuration Manager (NCM) before 9.2 does not require authentication for all Java RMI method calls, which allows remote attacker…

Fix: after 9.1
Fix from $1,950 2013-03-28
Rsa Archer Smartsuite HIGH 7.5
CVE-2012-2292

The Silverlight cross-domain policy in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 does not restrict access to the A…

Mitigation only
Fix from $1,950 2013-02-06
Rsa Archer Smartsuite MEDIUM 6.8
CVE-2012-2294

EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allow remote attackers to conduct clickjacking attacks via a crafted web…

Mitigation only
Fix from $1,600 2013-02-06
Rsa Archer Smartsuite MEDIUM 6.5
CVE-2012-2293

Directory traversal vulnerability in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allows remote authenticated users t…

Mitigation only
Fix from $1,600 2013-02-06
Alphastor HIGH 7.6
CVE-2013-0930

Buffer overflow in Drive Control Program (DCP) in EMC AlphaStor 4.0 before build 814 allows remote attackers to execute arbitrary code via vectors in…

Mitigation only
Fix from $1,950 2013-01-31
Alphastor HIGH 9.3
CVE-2013-0928EPSS 34%

The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to execute arbitra…

No fix yet
Fix from $1,950 2013-01-21
Alphastor HIGH 7.6
CVE-2013-0929

Format string vulnerability in the _vsnsprintf function in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote atta…

Mitigation only
Fix from $1,950 2013-01-21
Avamar HIGH 7.2
CVE-2012-2291

EMC Avamar Client 4.x, 5.x, and 6.x on HP-UX and Mac OS X, and the EMC Avamar plugin 4.x, 5.x, and 6.x for Oracle, uses world-writable permissions fo…

Mitigation only
Fix from $1,950 2013-01-21
Networker HIGH 9.3
CVE-2012-4607

Buffer overflow in nsrindexd in EMC NetWorker 7.5.x and 7.6.x before 7.6.5, and 8.x before 8.0.0.6, allows remote attackers to execute arbitrary code…

Mitigation only
Fix from $1,950 2013-01-17
Data Protection Advisor MEDIUM 5.0
CVE-2012-4616

Directory traversal vulnerability in the Web UI in EMC Data Protection Advisor (DPA) 5.6 through SP1, 5.7 through SP1, and 5.8 through SP4 allows rem…

Mitigation only
Fix from $1,600 2012-12-26
Rsa Netwitness Informer MEDIUM 6.8
CVE-2012-4608

Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack …

Fix: after 2.0.5.5
Fix from $1,600 2012-12-05
It Operations Intelligence HIGH 9.3
CVE-2012-4614

The default configuration of EMC Smarts Network Configuration Manager (NCM) before 9.1 does not require authentication for database access, which all…

Fix: after 9.0
Fix from $1,950 2012-11-27
Rsa Data Protection Manager Appliance MEDIUM 6.9
CVE-2012-4613

EMC RSA Data Protection Manager Appliance 2.7.x and 3.x before 3.2.1 does not properly restrict the number of authentication attempts by a user accou…

Mitigation only
Fix from $1,600 2012-11-16
Networker Module For Microsoft Applications HIGH 9.3
CVE-2012-2290

The client in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375 allows remote attackers to …

Mitigation only
Fix from $1,950 2012-10-18
Rsa Authentication Agent HIGH 8.5
CVE-2012-2287

The authentication functionality in EMC RSA Authentication Agent 7.1 and RSA Authentication Client 3.5 on Windows XP and Windows Server 2003, when an…

Mitigation only
Fix from $1,950 2012-09-25
Networker HIGH 9.3
CVE-2012-2288EPSS 33%

Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers …

Mitigation only
Fix from $1,950 2012-09-04
Cloud Tiering Appliance Virtual Edition MEDIUM 6.8
CVE-2012-2285

EMC Cloud Tiering Appliance (aka CTA, formerly FMA) 9.0 and earlier, and Cloud Tiering Appliance Virtual Edition (CTA/VE) 9.0 and earlier, allows rem…

Fix: after 9.0
Fix from $1,600 2012-08-29
Applicationxtender Desktop HIGH 7.5
CVE-2012-2289EPSS 5%

EMC ApplicationXtender Desktop before 6.5 SP2 and ApplicationXtender Web Access .NET before 6.5 SP2 allow remote attackers to upload files to any loc…

Fix: after 6.5
Fix from $1,950 2012-08-26
Lifeline MEDIUM 5.5
CVE-2012-2283

The Iomega Home Media Network Hard Drive with EMC Lifeline firmware before 2.104, Home Media Network Hard Drive Cloud Edition with EMC Lifeline firmw…

Fix: 3.2.3.15290+
Fix from $1,600 2012-08-16
Celerra Network Server MEDIUM 6.5
CVE-2012-2282

EMC Celerra Network Server 6.x before 6.0.61.0, VNX 7.x before 7.0.53.2, and VNXe 2.0 and 2.1 before 2.1.3.19077 (aka MR1 SP3.2) and 2.2 before 2.2.0…

Mitigation only
Fix from $1,600 2012-07-16
Rsa Authentication Manager MEDIUM 6.4
CVE-2012-2279

Open redirect vulnerability in the Security Console in EMC RSA Authentication Manager 7.1 before SP4 P14 and RSA SecurID Appliance 3.0 before SP4 P14…

Fix: after 7.1
Fix from $1,600 2012-07-13
Rsa Authentication Manager MEDIUM 5.0
CVE-2012-2280

EMC RSA Authentication Manager 7.1 before SP4 P14 and RSA SecurID Appliance 3.0 before SP4 P14 do not properly use frames, which allows remote attack…

Fix: after 7.1
Fix from $1,600 2012-07-13
Captiva Quickscan Pro HIGH 9.3
CVE-2012-2515EPSS 28%

Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help c…

No fix yet
Fix from $1,950 2012-07-05
Autostart HIGH 7.5
CVE-2012-0409

Multiple buffer overflows in EMC AutoStart 5.3.x and 5.4.x before 5.4.3 allow remote attackers to cause a denial of service (agent crash) or possibly…

Mitigation only
Fix from $1,950 2012-06-01
Documentum Information Rights Management HIGH 7.8
CVE-2012-2276EPSS 9%

The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial …

No fix yet
Fix from $1,950 2012-05-14