CVE-2014-0645: Medium severity EMC Cloud Tiering Appliance Software vulnerability
EMC Cloud Tiering Appliance (CTA) 9.x through 10 SP1 and File Management Appliance (FMA) 7.x store DES password hashes for the root, super, and admin accounts, which makes it easier for context-dependent attackers to obtain sensitive information via a brute-force attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0645?
CVE-2014-0645 has a medium severity rating due to the potential for attackers to exploit weak password hashing.
How do I fix CVE-2014-0645?
To fix CVE-2014-0645, implement stronger password hashing algorithms and regularly update your software.
Which products are affected by CVE-2014-0645?
CVE-2014-0645 affects EMC Cloud Tiering Appliance versions 9.x to 10 SP1 and File Management Appliance version 7.x.
What attackers can do with CVE-2014-0645?
Attackers can potentially obtain sensitive credentials through brute-force attacks due to weak DES password hashes.
Is there a patch available for CVE-2014-0645?
Yes, EMC has released updates that address CVE-2014-0645 and organizations should apply these updates to mitigate the risk.