Vulnerabilities > EMC > Cloud Tiering Appliance > Medium

DATE CVE VULNERABILITY TITLE RISK
2014-04-17 CVE-2014-0645 Credentials Management vulnerability in EMC products
EMC Cloud Tiering Appliance (CTA) 9.x through 10 SP1 and File Management Appliance (FMA) 7.x store DES password hashes for the root, super, and admin accounts, which makes it easier for context-dependent attackers to obtain sensitive information via a brute-force attack.
local
emc CWE-255
4.7
2012-08-29 CVE-2012-2285 Improper Authentication vulnerability in EMC products
EMC Cloud Tiering Appliance (aka CTA, formerly FMA) 9.0 and earlier, and Cloud Tiering Appliance Virtual Edition (CTA/VE) 9.0 and earlier, allows remote attackers to obtain GUI administrative access by sending a crafted file during the authentication phase.
network
emc CWE-287
6.8