CVE-2012-2288: Critical severity networker vulnerability
Published Sep 4, 2012
·Updated
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message.
Affected Software
3 affected components
EMC NetWorker=7.6.3
EMC NetWorker=7.6.4
EMC NetWorker=8.0
Event History
Sep 4, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2288?
CVE-2012-2288 has a high severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2012-2288?
To fix CVE-2012-2288, update EMC NetWorker to version 7.6.4.1 or 8.0.0.1 or later.
3
What software versions are affected by CVE-2012-2288?
CVE-2012-2288 affects EMC NetWorker versions 7.6.3, 7.6.4, and 8.0 prior to 8.0.0.1.
4
Who is affected by CVE-2012-2288?
Organizations using vulnerable versions of EMC NetWorker are at risk from CVE-2012-2288.
5
What impact does CVE-2012-2288 have on systems?
CVE-2012-2288 can lead to arbitrary code execution, compromising the affected systems.