7.8
CVSSv2

CVE-2012-0406

Published: 20/04/2012 Updated: 14/08/2012
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 up to and including 5.8 SP1 allows remote malicious users to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that (1) lacks a password field or (2) has an empty password.

Vulnerable Product Search on Vulmon Subscribe to Product

emc data protection advisor 5.6

emc data protection advisor 5.7

emc data protection advisor 5.5

emc data protection advisor 5.8

Exploits

####################################################################### Luigi Auriemma Application: EMC Data Protection Advisor wwwemccom/backup-and-recovery/data-protection-advisor/data-protection-advisorhtm Versions: <= 581 Platforms: AIX, HP-UX, Linux, Solaris, Windows Bugs: ...