EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
BID:35998
Info
EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
| Bugtraq ID: | 35998 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 07 2009 12:00AM |
| Updated: | Aug 21 2009 03:57PM |
| Credit: | Anonymous |
| Vulnerable: |
EMC Replication Manager Client 0 |
| Not Vulnerable: | |
Discussion
EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
EMC Replication Manager Client is prone to a remote code-execution vulnerability.
Remote attackers can exploit this issue to execute arbitrary code in the context of the user running the application.
EMC Replication Manager Client is prone to a remote code-execution vulnerability.
Remote attackers can exploit this issue to execute arbitrary code in the context of the user running the application.
Exploit / POC
EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
An attacker can exploit this issue by using readily available network utilities.
An attacker can exploit this issue by using readily available network utilities.
Solution / Fix
EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
Solution:
Reports indicate that fixes are available. Please contact the vendor for details.
Solution:
Reports indicate that fixes are available. Please contact the vendor for details.
References
EMC Replication Manager Client Control Service Remote Code Execution Vulnerability
References:
References:
- Replication Manager Homepage (EMC)
- ZDI-09-051: EMC Replication Manager Client Control Service Remove Code Execution (ZDI Disclosures
) - ZDI-09-051: EMC Replication Manager Client Control Service Remove Code Execution (Zero Day Initiative)