ZeroHour

CVE-2017-4987

CVSS 3.0
7.3 high
EPSS
<1%p38
Published
()
Modified
Description

In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, a local authenticated user can load a maliciously crafted file in the search path which may potentially allow the attacker to execute arbitrary code on the targeted VNX Control Station system, aka an uncontrolled search path vulnerability.

Vendors
emc
Products
vnx2 firmware, vnx1 firmware
Weakness
CWE-427
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.