| |
Vulnerability CVE-2012-2288
Published: 2012-09-04
Description: |
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message. |
See advisories in our WLB2 database: | Topic | Author | Date |
High |
| Aaron Portnoy | 01.09.2012 |
Type:
CWE-134 (Uncontrolled Format String)
CVSS2 => (AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
9.3/10 |
10/10 |
8.6/10 |
Exploit range |
Attack complexity |
Authentication |
Remote |
Medium |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Complete |
Complete |
Complete |
References: |
http://archives.neohapsis.com/archives/bugtraq/2012-08/0219.html
|
|
|
closedb();
?>
Copyright 2024, cxsecurity.com
|
|
|