CVE-2010-2860: Critical severity EMC Celerra Network Attached Storage vulnerability
The EMC Celerra Network Attached Storage (NAS) appliance accepts external network traffic to IP addresses intended for an intranet network within the appliance, which allows remote attackers to read, create, or modify arbitrary files in the user data directory via NFS requests.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2860?
CVE-2010-2860 is classified as a critical vulnerability due to the potential for unauthorized access to sensitive user data.
How do I fix CVE-2010-2860?
To mitigate CVE-2010-2860, it is recommended to apply the latest security patches and restrict external network access to the EMC Celerra Network Attached Storage.
What systems are affected by CVE-2010-2860?
CVE-2010-2860 affects the EMC Celerra Network Attached Storage appliances.
What type of attacks can exploit CVE-2010-2860?
CVE-2010-2860 can be exploited through NFS requests, allowing remote attackers to manipulate files in the user data directory.
Is there a workaround for CVE-2010-2860 while waiting for a patch?
A possible workaround for CVE-2010-2860 includes configuring firewall rules to block unauthorized access to the internal IP addresses of the EMC Celerra appliance.