First published: Wed Jul 31 2013(Updated: )
EMC NetWorker 7.6.x and 8.x before 8.1 allows local users to obtain sensitive configuration information by leveraging operating-system privileges to perform decryption with nsradmin.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetWorker | =7.6 | |
NetWorker | =7.6-sp1 | |
NetWorker | =7.6-sp2 | |
NetWorker | =7.6.0.2 | |
NetWorker | =7.6.0.3 | |
NetWorker | =7.6.0.4 | |
NetWorker | =7.6.0.5 | |
NetWorker | =7.6.0.6 | |
NetWorker | =7.6.0.7 | |
NetWorker | =7.6.0.8 | |
NetWorker | =7.6.0.9 | |
NetWorker | =7.6.1 | |
NetWorker | =7.6.1.1 | |
NetWorker | =7.6.1.2 | |
NetWorker | =7.6.1.3 | |
NetWorker | =7.6.1.4 | |
NetWorker | =7.6.1.5 | |
NetWorker | =7.6.3 | |
NetWorker | =7.6.4 | |
NetWorker | =7.6.4.1 | |
NetWorker | =7.6.4.2 | |
NetWorker | =7.6.4.3 | |
NetWorker | =7.6.4.4 | |
NetWorker | =7.6.4.5 | |
NetWorker | =7.6.5 | |
NetWorker | =7.6.5.2 | |
NetWorker | =7.6.5.3 | |
NetWorker | =7.6.5.4 | |
NetWorker | =7.6.5.5 | |
NetWorker | =7.6.5.6 | |
NetWorker | =8.0 | |
NetWorker | =8.0.0.1 | |
NetWorker | =8.0.0.2 | |
NetWorker | =8.0.0.3 | |
NetWorker | =8.0.0.4 | |
NetWorker | =8.0.0.5 | |
NetWorker | =8.0.0.6 | |
NetWorker | =8.0.1.3 | |
NetWorker | =8.0.1.4 | |
NetWorker | =8.0.1.5 | |
NetWorker | =8.0.1.6 | |
NetWorker | =8.0.2.0 | |
NetWorker | =8.0.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0943 has been classified with a medium severity rating due to its potential to expose sensitive configuration data.
To mitigate CVE-2013-0943, upgrade EMC NetWorker to version 8.1 or later which addresses the vulnerability.
CVE-2013-0943 affects local users with operating-system privileges on EMC NetWorker versions 7.6.x and 8.x prior to 8.1.
CVE-2013-0943 is a local information disclosure vulnerability that allows access to sensitive data through decryption.
No, CVE-2013-0943 requires local access to the system for exploitation.