CVE-2014-4634: Medium severity dell emc appsync vulnerability
Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4634?
CVE-2014-4634 has a medium severity rating due to its potential to allow local privilege escalation.
How do I fix CVE-2014-4634?
To fix CVE-2014-4634, update EMC Replication Manager to version 5.5.3 or later, and AppSync to version 2.1.0 or later.
Who is affected by CVE-2014-4634?
CVE-2014-4634 affects local users of EMC Replication Manager versions up to 5.5.2 and AppSync versions prior to 2.1.0.
What are the potential impacts of CVE-2014-4634?
The potential impacts of CVE-2014-4634 include unauthorized privilege escalation, allowing local users to execute malicious applications.
Can CVE-2014-4634 be exploited remotely?
No, CVE-2014-4634 can only be exploited by local users with access to the affected systems.