First published: Thu Feb 10 2011(Updated: )
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary commands via the RunProgram function to TCP port 6542.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
EMC Replication Manager | <=5.2.3 | |
EMC Replication Manager | =2.0 | |
EMC Replication Manager | =5.2 | |
EMC Replication Manager | =5.2.2 | |
Dell EMC NetWorker | =2.1 | |
Dell EMC NetWorker | =2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0647 has a high severity rating due to its ability to allow remote attackers to execute arbitrary commands.
To mitigate CVE-2011-0647, upgrade to EMC Replication Manager Client version 5.3 or later, or upgrade to NetWorker Module for Microsoft Applications version 2.3 or later.
CVE-2011-0647 affects EMC Replication Manager Client versions prior to 5.3 and NetWorker Module for Microsoft Applications versions 2.1.x and 2.2.x.
Yes, CVE-2011-0647 can be exploited remotely by attacking TCP port 6542.
The vulnerability in CVE-2011-0647 specifically lies in the RunProgram function of the irccd.exe service.