EMC Data Protection Advisor prior to 6.4 contains a path traversal vulnerability. A remote authenticated high privileged user may potentially exploit this vulnerability to access unauthorized information from the underlying OS server by supplying specially crafted strings in input parameters of the application.
2017-07-09T20:29:00.280
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 4.9 (MEDIUM)
AV:N/AC:L/Au:S/C:C/I:N/A:N
8.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | emc | data_protection_advisor | ≤ 6.3 | Yes |