CVE-2017-4987
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, a local authenticated user can load a maliciously crafted file in the search path which may potentially allow the attacker to execute arbitrary code on the targeted VNX Control Station system, aka an uncontrolled search path vulnerability.
En EMC VNX2 en versiones anteriores a OE for File 8.1.9.211 y VNX1 en versiones anteriores a OE for File 7.1.80.8, un usuario autenticado local puede cargar un archivo maliciosamente manipulado en la ruta de búsqueda que podría permitir que el atacante ejecute código arbitrario en el sistema VNX Control Station objetivo. Esto también se conoce como vulnerabilidad de ruta de búsqueda no controlada.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-12-29 CVE Reserved
- 2017-06-16 CVE Published
- 2023-09-23 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-427: Uncontrolled Search Path Element
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/archive/1/540738/30/0/threaded | Third Party Advisory | |
http://www.securityfocus.com/bid/99045 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Emc Search vendor "Emc" | Vnx2 Firmware Search vendor "Emc" for product "Vnx2 Firmware" | - | - |
Affected
| in | Emc Search vendor "Emc" | Vnx2 Search vendor "Emc" for product "Vnx2" | - | - |
Safe
|
Emc Search vendor "Emc" | Vnx1 Firmware Search vendor "Emc" for product "Vnx1 Firmware" | - | - |
Affected
| in | Emc Search vendor "Emc" | Vnx1 Search vendor "Emc" for product "Vnx1" | - | - |
Safe
|