8.8
CVSSv3

CVE-2016-0906

Published: 06/07/2016 Updated: 01/09/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

The web-restore interface in Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar up to and including 7.1.2 and 7.2.x up to and including 7.2.1 allows remote authenticated users to read or delete directories via a Linux backup-restore operation.

Vulnerable Product Search on Vulmon Subscribe to Product

emc avamar