Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-1740

Overview

Vulnerability Score 7.7 7.7
CVE Id CVE-2011-1740
Last Modified 20 Sep 2011 12:00:00
Published 19 Sep 2011 08:02:54
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector ADJACENT_NETWORK
Access Complexity LOW
Authentication SINGLE_INSTANCE

CVE-2011-1740

Summary

EMC Avamar 4.x, 5.0.x, and 6.0.x before 6.0.0-592 allows remote authenticated users to modify client data or obtain sensitive information about product activities by leveraging privileged access to a different domain.

Vulnerable Systems

Application

  • Emc Avamar 4.0

  • Emc Avamar 4.1

  • Emc Avamar 5.0

  • Emc Avamar 5.0.0-407

  • Emc Avamar 5.0.4-26

  • Emc Avamar 6.0


References

XF - avamar-client-data-sec-bypass(69760)

SECTRACK - 1026035

SECUNIA - 46002

SECUNIA - 45988

BUGTRAQ - 20110912 ESA-2011-018: Domain administration privilege enforcement bypass in EMC Avamar


Last Updated: 27 May 2016 10:56:25