Lucene search

K
cveCertccCVE-2006-3892
HistoryMar 02, 2007 - 9:18 p.m.

CVE-2006-3892

2007-03-0221:18:00
certcc
web.nvd.nist.gov
24
emc
networker
management console
weak authentication
vulnerability
remote execution
cve-2006-3892

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

High

EPSS

0.067

Percentile

94.0%

The Management Console server in EMC NetWorker (formerly Legato NetWorker) 7.3.2 before Jumbo Update 1 uses weak authentication, which allows remote attackers to execute arbitrary commands.

Affected configurations

Nvd
Node
emcnetworkerMatch7.3.2
VendorProductVersionCPE
emcnetworker7.3.2cpe:2.3:a:emc:networker:7.3.2:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

High

EPSS

0.067

Percentile

94.0%

Related for CVE-2006-3892