EMC Avamar Privilege Enforcement Security Bypass Vulnerability
BID:49574
Info
EMC Avamar Privilege Enforcement Security Bypass Vulnerability
| Bugtraq ID: | 49574 |
| Class: | Design Error |
| CVE: |
CVE-2011-2733 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2011 12:00AM |
| Updated: | Sep 12 2011 12:00AM |
| Credit: | EMC |
| Vulnerable: |
EMC Amavar 6.0 EMC Amavar 5.0 EMC Amavar 4.0 |
| Not Vulnerable: | |
Discussion
EMC Avamar Privilege Enforcement Security Bypass Vulnerability
EMC Avamar is prone to a security-bypass vulnerability.
Successful exploits may allow attacker to gain access to sensitive information an replicate activities within the restricted domain.
The following versions of EMC Amavar are vulnerable:
EMC Avamar version 4
EMC Avamar version 5.0
EMC Avamar version 6.0
EMC Avamar is prone to a security-bypass vulnerability.
Successful exploits may allow attacker to gain access to sensitive information an replicate activities within the restricted domain.
The following versions of EMC Amavar are vulnerable:
EMC Avamar version 4
EMC Avamar version 5.0
EMC Avamar version 6.0
Exploit / POC
EMC Avamar Privilege Enforcement Security Bypass Vulnerability
An attacker can use readily available network utilities to carry out this attack.
An attacker can use readily available network utilities to carry out this attack.
Solution / Fix
EMC Avamar Privilege Enforcement Security Bypass Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.