Vulnerabilities > EMC > Networker > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-10-18 CVE-2017-8022 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in EMC Networker
An issue was discovered in EMC NetWorker (prior to 8.2.4.9, all supported 9.0.x versions, prior to 9.1.1.3, prior to 9.2.0.4).
network
emc CWE-119
6.8
2013-07-31 CVE-2013-0943 Information Exposure vulnerability in EMC Networker
EMC NetWorker 7.6.x and 8.x before 8.1 allows local users to obtain sensitive configuration information by leveraging operating-system privileges to perform decryption with nsradmin.
local
low complexity
emc CWE-200
4.6
2011-04-22 CVE-2011-1421 Permissions, Privileges, and Access Controls vulnerability in EMC Networker
EMC NetWorker 7.5.x before 7.5.4.3 and 7.6.x before 7.6.1.5, when the client push feature is enabled, uses weak permissions for an unspecified file, which allows local users to gain privileges via unknown vectors.
local
emc CWE-264
6.9
2011-02-01 CVE-2011-0321 Permissions, Privileges, and Access Controls vulnerability in EMC Networker
librpc.dll in nsrexecd in EMC NetWorker before 7.5 SP4, 7.5.3.x before 7.5.3.5, and 7.6.x before 7.6.1.2 does not properly mitigate the possibility of a spoofed localhost source IP address, which allows remote attackers to (1) register or (2) unregister RPC services, and consequently cause a denial of service or obtain sensitive information from interprocess communication, via crafted UDP packets containing service commands.
network
low complexity
emc CWE-264
6.4
2002-03-25 CVE-2002-0114 Unspecified vulnerability in EMC Networker 6.1
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file.
local
low complexity
emc
4.6
2002-03-25 CVE-2002-0113 Unspecified vulnerability in EMC Networker 6.1
EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges.
local
low complexity
emc
4.6