First published: Tue Sep 04 2012(Updated: )
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetWorker | =7.6.3 | |
NetWorker | =7.6.4 | |
NetWorker | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2288 has a high severity rating due to its potential to allow remote code execution.
To fix CVE-2012-2288, update EMC NetWorker to version 7.6.4.1 or 8.0.0.1 or later.
CVE-2012-2288 affects EMC NetWorker versions 7.6.3, 7.6.4, and 8.0 prior to 8.0.0.1.
Organizations using vulnerable versions of EMC NetWorker are at risk from CVE-2012-2288.
CVE-2012-2288 can lead to arbitrary code execution, compromising the affected systems.