First published: Thu Mar 12 2015(Updated: )
SQL injection vulnerability in the Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Secure Remote Services | =3.02 | |
Dell EMC Secure Remote Services | =3.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0524 has a High severity rating due to its potential for remote SQL command execution.
To address CVE-2015-0524, it is recommended to upgrade to a patched version of EMC Secure Remote Services.
The affected software versions for CVE-2015-0524 are EMC Secure Remote Services 3.02 and 3.03.
Yes, CVE-2015-0524 can be exploited remotely by attackers to execute arbitrary SQL commands.
CVE-2015-0524 is classified as an SQL injection vulnerability.