Lucene search

K
cveDellCVE-2013-3270
HistoryMay 20, 2013 - 2:44 p.m.

CVE-2013-3270

2013-05-2014:44:35
CWE-264
dell
web.nvd.nist.gov
23
cve-2013-3270
emc
vnx
celerra
control station
privilege escalation
nvd
security

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.1%

EMC VNX Control Station before 7.1.70.2 and Celerra Control Station before 6.0.70.1 have an incorrect group ownership for unspecified script files, which allows local users to gain privileges by leveraging nasadmin group membership.

Affected configurations

Nvd
Node
emcvnx_control_stationRange7.1.70.1
AND
emcvnxMatch5100
OR
emcvnxMatch5300
OR
emcvnxMatch5500
OR
emcvnxMatch5700
OR
emcvnxMatch7500
Node
emccelerra_control_stationRange6.0.70.0
AND
emcvnxMatch5100
OR
emcvnxMatch5300
OR
emcvnxMatch5500
OR
emcvnxMatch5700
OR
emcvnxMatch7500
VendorProductVersionCPE
emcvnx_control_station*cpe:2.3:a:emc:vnx_control_station:*:*:*:*:*:*:*:*
emcvnx5100cpe:2.3:h:emc:vnx:5100:*:*:*:*:*:*:*
emcvnx5300cpe:2.3:h:emc:vnx:5300:*:*:*:*:*:*:*
emcvnx5500cpe:2.3:h:emc:vnx:5500:*:*:*:*:*:*:*
emcvnx5700cpe:2.3:h:emc:vnx:5700:*:*:*:*:*:*:*
emcvnx7500cpe:2.3:h:emc:vnx:7500:*:*:*:*:*:*:*
emccelerra_control_station*cpe:2.3:a:emc:celerra_control_station:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2013-3270