Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-8022

Опубликовано: 18 окт. 2017
Источник: nvd
CVSS3: 8.1
CVSS2: 6.8
EPSS Низкий

Описание

An issue was discovered in EMC NetWorker (prior to 8.2.4.9, all supported 9.0.x versions, prior to 9.1.1.3, prior to 9.2.0.4). The Server service (nsrd) is affected by a buffer overflow vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to execute arbitrary code on vulnerable installations of the software, or cause a denial of service, depending on the target system's platform.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:emc:networker:*:*:*:*:*:*:*:*
Версия до 8.2.4.8 (включая)
cpe:2.3:a:emc:networker:9.0.0.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.0.4:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.0.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.0.6:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.0.7:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.0.8:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.6:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.7:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.8:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.0.1.9:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:networker:9.2.0.3:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.0182
Низкий

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.1
github
больше 3 лет назад

An issue was discovered in EMC NetWorker (prior to 8.2.4.9, all supported 9.0.x versions, prior to 9.1.1.3, prior to 9.2.0.4). The Server service (nsrd) is affected by a buffer overflow vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to execute arbitrary code on vulnerable installations of the software, or cause a denial of service, depending on the target system's platform.

EPSS

Процентиль: 82%
0.0182
Низкий

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-119