ZeroHour

CVE-2016-6649

CVSS 3.0
6.7 medium
EPSS
<1%p57
Published
()
Modified
Description

EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 are affected by multiple command injection vulnerabilities where a malicious administrator with configuration privileges may bypass the user interface and escalate his privileges to root.

Vendors
dellemc
Products
recoverpoint for virtual machines, recoverpoint
Weakness
CWE-77
Vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.