Lucene search

K
cveDellCVE-2013-0940
HistoryMay 03, 2013 - 11:57 a.m.

CVE-2013-0940

2013-05-0311:57:41
CWE-264
dell
web.nvd.nist.gov
29
emc networker
nsrpush process
weak permissions
cve-2013-0940
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%

The nsrpush process in the client in EMC NetWorker before 7.6.5.3 and 8.x before 8.0.1.4 sets weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.

Affected configurations

Nvd
Node
emcnetworkerRange7.6.5.2
OR
emcnetworkerMatch6.0
OR
emcnetworkerMatch6.1
OR
emcnetworkerMatch7.0
OR
emcnetworkerMatch7.2
OR
emcnetworkerMatch7.3
OR
emcnetworkerMatch7.3.2
OR
emcnetworkerMatch7.4
OR
emcnetworkerMatch7.4sp1
OR
emcnetworkerMatch7.4sp2
OR
emcnetworkerMatch7.4sp3
OR
emcnetworkerMatch7.4sp4
OR
emcnetworkerMatch7.4sp5
OR
emcnetworkerMatch7.4.5.4
OR
emcnetworkerMatch7.4.5.5
OR
emcnetworkerMatch7.4.5.6
OR
emcnetworkerMatch7.4.5.10
OR
emcnetworkerMatch7.5
OR
emcnetworkerMatch7.5sp1
OR
emcnetworkerMatch7.5sp2
OR
emcnetworkerMatch7.5sp3
OR
emcnetworkerMatch7.5.2.0
OR
emcnetworkerMatch7.5.2.1
OR
emcnetworkerMatch7.5.2.2
OR
emcnetworkerMatch7.5.2.3
OR
emcnetworkerMatch7.5.2.4
OR
emcnetworkerMatch7.5.3
OR
emcnetworkerMatch7.5.3.1
OR
emcnetworkerMatch7.5.3.2
OR
emcnetworkerMatch7.5.3.3
OR
emcnetworkerMatch7.5.3.4
OR
emcnetworkerMatch7.5.3.5
OR
emcnetworkerMatch7.5.4
OR
emcnetworkerMatch7.5.4.1
OR
emcnetworkerMatch7.5.4.2
OR
emcnetworkerMatch7.5.4.3
OR
emcnetworkerMatch7.5.4.4
OR
emcnetworkerMatch7.5.4.5
OR
emcnetworkerMatch7.5.4.6
OR
emcnetworkerMatch7.5.4.7
OR
emcnetworkerMatch7.6.0.2
OR
emcnetworkerMatch7.6.0.3
OR
emcnetworkerMatch7.6.0.4
OR
emcnetworkerMatch7.6.0.5
OR
emcnetworkerMatch7.6.0.6
OR
emcnetworkerMatch7.6.0.7
OR
emcnetworkerMatch7.6.0.8
OR
emcnetworkerMatch7.6.0.9
OR
emcnetworkerMatch7.6.1
OR
emcnetworkerMatch7.6.1.1
OR
emcnetworkerMatch7.6.1.2
OR
emcnetworkerMatch7.6.1.3
OR
emcnetworkerMatch7.6.1.4
OR
emcnetworkerMatch7.6.1.5
OR
emcnetworkerMatch7.6.3
OR
emcnetworkerMatch7.6.4
OR
emcnetworkerMatch7.6.4.1
OR
emcnetworkerMatch7.6.4.2
OR
emcnetworkerMatch7.6.4.3
OR
emcnetworkerMatch7.6.4.4
OR
emcnetworkerMatch7.6.4.5
OR
emcnetworkerMatch7.6.5
Node
emcnetworkerMatch8.0
OR
emcnetworkerMatch8.0.0.1
OR
emcnetworkerMatch8.0.0.2
OR
emcnetworkerMatch8.0.0.3
OR
emcnetworkerMatch8.0.0.4
OR
emcnetworkerMatch8.0.0.5
OR
emcnetworkerMatch8.0.0.6
OR
emcnetworkerMatch8.0.1.3
VendorProductVersionCPE
emcnetworker*cpe:2.3:a:emc:networker:*:*:*:*:*:*:*:*
emcnetworker6.0cpe:2.3:a:emc:networker:6.0:*:*:*:*:*:*:*
emcnetworker6.1cpe:2.3:a:emc:networker:6.1:*:*:*:*:*:*:*
emcnetworker7.0cpe:2.3:a:emc:networker:7.0:*:*:*:*:*:*:*
emcnetworker7.2cpe:2.3:a:emc:networker:7.2:*:*:*:*:*:*:*
emcnetworker7.3cpe:2.3:a:emc:networker:7.3:*:*:*:*:*:*:*
emcnetworker7.3.2cpe:2.3:a:emc:networker:7.3.2:*:*:*:*:*:*:*
emcnetworker7.4cpe:2.3:a:emc:networker:7.4:*:*:*:*:*:*:*
emcnetworker7.4cpe:2.3:a:emc:networker:7.4:sp1:*:*:*:*:*:*
emcnetworker7.4cpe:2.3:a:emc:networker:7.4:sp2:*:*:*:*:*:*
Rows per page:
1-10 of 701

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0

Percentile

5.1%