CVE-2012-4616: Path Traversal
Published Dec 26, 2012
·Updated
Directory traversal vulnerability in the Web UI in EMC Data Protection Advisor (DPA) 5.6 through SP1, 5.7 through SP1, and 5.8 through SP4 allows remote attackers to read arbitrary files via unspecified vectors.
Affected Software
7 affected components
EMC Data Protection Advisor=5.6
EMC Data Protection Advisor=5.6-sp1
EMC Data Protection Advisor=5.7
EMC Data Protection Advisor=5.7-sp1
EMC Data Protection Advisor=5.8
EMC Data Protection Advisor=5.8-sp1
EMC Data Protection Advisor=5.8-sp4
Event History
Dec 26, 2012
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-4616?
CVE-2012-4616 has a medium severity rating as it allows remote attackers to read arbitrary files.
2
How do I fix CVE-2012-4616?
To fix CVE-2012-4616, you should upgrade to a patched version of EMC Data Protection Advisor beyond 5.8 SP4.
3
What systems are affected by CVE-2012-4616?
CVE-2012-4616 affects EMC Data Protection Advisor versions 5.6 to 5.8 SP4.
4
What type of vulnerability is CVE-2012-4616?
CVE-2012-4616 is classified as a directory traversal vulnerability.
5
Can CVE-2012-4616 be exploited remotely?
Yes, CVE-2012-4616 can be exploited remotely by attackers to access restricted files.