EMC / Avamar
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2016-0906 | The web-restore interface in Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar through 7.1.2 and 7.2.x through 7.2.1 allows remote authent… | HIGH | 8.8 | Jul 6, 2016 |
| CVE-2014-4623 | EMC Avamar 6.0.x, 6.1.x, and 7.0.x in Avamar Data Store (ADS) GEN4(S) and Avamar Virtual Edition (AVE), when Password Hardening before 2.0.0.4 is enabled, uses… | MEDIUM | 4.3 | Oct 25, 2014 |
| CVE-2013-0945 | EMC Avamar Client before 6.1.101-89 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of… | HIGH | 9.3 | May 3, 2013 |
| CVE-2013-0944 | The web-based file-restore interface in EMC Avamar Server before 6.1.0 allows remote authenticated users to read arbitrary files via a crafted URL. | LOW | 3.5 | May 3, 2013 |
| CVE-2012-2291 | EMC Avamar Client 4.x, 5.x, and 6.x on HP-UX and Mac OS X, and the EMC Avamar plugin 4.x, 5.x, and 6.x for Oracle, uses world-writable permissions for cache di… | HIGH | 7.2 | Jan 21, 2013 |
| CVE-2012-4610 | EMC Avamar Client for VMware 6.1 stores the cleartext server root password on the proxy client, which might allow remote attackers to obtain sensitive informat… | LOW | 3.3 | Oct 31, 2012 |
| CVE-2011-1740 | EMC Avamar 4.x, 5.0.x, and 6.0.x before 6.0.0-592 allows remote authenticated users to modify client data or obtain sensitive information about product activit… | HIGH | 7.7 | Sep 17, 2011 |
| CVE-2011-0648 | Unspecified vulnerability in EMC Avamar before 5.0.4-30 allows remote authenticated users to gain privileges via unknown vectors. | HIGH | 8.5 | Mar 16, 2011 |
| CVE-2011-0442 | The service utility in EMC Avamar 5.x before 5.0.4 uses cleartext to transmit event details in (1) service requests and (2) e-mail messages, which might allow… | LOW | 3.5 | Mar 16, 2011 |
| CVE-2010-1919 | Unspecified vulnerability in EMC Avamar 4.1.x and 5.0 before SP1 allows remote attackers to cause a denial of service (gsan service hang) by sending a crafted… | HIGH | 7.1 | May 28, 2010 |
Showing 1 to 10 of 10 CVEs