CVE-2015-0514: Infoleak
EMC M&R (aka Watch4Net) before 6.5u1 and ViPR SRM before 3.6.1 might allow remote attackers to obtain cleartext data-center discovery credentials by leveraging certain SRM access to conduct a decryption attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0514?
The severity of CVE-2015-0514 is classified as high due to the potential exposure of sensitive credentials.
How do I fix CVE-2015-0514?
To fix CVE-2015-0514, you should upgrade to EMC M&R version 6.5u1 or ViPR SRM version 3.6.1 or later.
What types of systems are affected by CVE-2015-0514?
CVE-2015-0514 affects EMC M&R versions prior to 6.5u1 and ViPR SRM versions prior to 3.6.1.
What type of attack can be executed using CVE-2015-0514?
CVE-2015-0514 can be exploited by remote attackers to perform a decryption attack on cleartext data-center discovery credentials.
Is CVE-2015-0514 a local or remote vulnerability?
CVE-2015-0514 is considered a remote vulnerability as it can be exploited by attackers from outside the affected systems.