Vulnerabilities > EMC > Replication Manager > 5.2

DATE CVE VULNERABILITY TITLE RISK
2016-10-05 CVE-2016-0913 Improper Input Validation vulnerability in EMC products
The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to execute arbitrary commands by placing a crafted script in an SMB share.
network
low complexity
emc CWE-20
7.5
2014-12-30 CVE-2014-4634 Local Privilege Escalation vulnerability in EMC Replication Manager and AppSync
Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.
local
low complexity
emc
4.6
2013-12-28 CVE-2013-6182 Local Privilege Escalation vulnerability in EMC Replication Manager Unquoted File Paths
Unquoted Windows search path vulnerability in EMC Replication Manager before 5.5 allows local users to gain privileges via a crafted application in a parent directory of an intended directory.
local
low complexity
emc
7.2
2013-07-08 CVE-2013-3272 Credentials Management vulnerability in EMC Replication Manager
EMC Replication Manager (RM) before 5.4.4 places encoded passwords in application log files, which makes it easier for local users to obtain sensitive information by reading a file and conducting an unspecified decoding attack.
local
low complexity
emc CWE-255
2.1
2011-02-10 CVE-2011-0647 Improper Input Validation vulnerability in EMC Networker Module and Replication Manager
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary commands via the RunProgram function to TCP port 6542.
network
low complexity
emc CWE-20
critical
10.0