An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Appliance 2.0. A remote authenticated malicious user with low privileges could access arbitrary files on the server file system in the context of the running vulnerable application via Path traversal.
References
Link Resource
http://seclists.org/fulldisclosure/2018/Jan/17 Issue Tracking Mailing List Third Party Advisory
http://www.securityfocus.com/bid/102358 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1040070 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: dell

Published: 2018-01-05T17:00:00

Updated: 2018-01-06T10:57:01

Reserved: 2017-10-17T00:00:00


Link: CVE-2017-15550

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-01-05T17:29:00.300

Modified: 2018-01-18T23:23:13.567


Link: CVE-2017-15550

JSON object: View

cve-icon Redhat Information

No data.

CWE