CVE-2014-0632: Path Traversal
Published Mar 28, 2014
·Updated
Directory traversal vulnerability in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 allows remote authenticated users to execute arbitrary code via unspecified vectors.
Affected Software
5 affected components
EMC VPLEX GeoSynchrony=4.0
EMC VPLEX GeoSynchrony=5.0
EMC VPLEX GeoSynchrony=5.1
EMC VPLEX GeoSynchrony=5.2
EMC VPLEX GeoSynchrony=5.2.1
Event History
Mar 28, 2014
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Apr 1, 2014
Data Sourced
via NVD·06:28 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0632?
CVE-2014-0632 has a medium severity rating due to its potential to allow arbitrary code execution by authenticated users.
2
How do I fix CVE-2014-0632?
To fix CVE-2014-0632, upgrade to EMC VPLEX GeoSynchrony version 5.3 or later.
3
What software is affected by CVE-2014-0632?
CVE-2014-0632 affects EMC VPLEX GeoSynchrony versions 4.0, 5.0, 5.1, 5.2, and 5.2.1.
4
Who can exploit CVE-2014-0632?
CVE-2014-0632 can be exploited by remote authenticated users who have access to the vulnerable system.
5
What type of vulnerability is CVE-2014-0632?
CVE-2014-0632 is a directory traversal vulnerability that can be leveraged to execute arbitrary code.