CVE-2013-3279: Medium severity emc atmos vulnerability
Published Oct 16, 2013
·Updated
EMC Atmos before 2.1.4 has a blank password for the PostgreSQL account, which allows remote attackers to obtain sensitive administrative information via a database-server connection.
Affected Software
1 affected component
EMC Atmos<=2.1.3
Event History
Oct 16, 2013
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3279?
CVE-2013-3279 is considered a critical vulnerability due to its potential for remote exploitation and sensitive information exposure.
2
How do I fix CVE-2013-3279?
To fix CVE-2013-3279, upgrade to EMC Atmos version 2.1.4 or later, which addresses the blank password issue for the PostgreSQL account.
3
What systems are affected by CVE-2013-3279?
CVE-2013-3279 affects EMC Atmos versions up to and including 2.1.3.
4
What are the risks associated with CVE-2013-3279?
The risks associated with CVE-2013-3279 include unauthorized access to sensitive administrative information via a vulnerable database connection.
5
Can CVE-2013-3279 be exploited remotely?
Yes, CVE-2013-3279 can be exploited remotely due to the unprotected PostgreSQL account.