First published: Thu Mar 12 2015(Updated: )
The Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Secure Remote Services | =3.02 | |
Dell EMC Secure Remote Services | =3.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0525 is classified as a critical vulnerability due to its ability to allow remote attackers to execute arbitrary OS commands.
To mitigate CVE-2015-0525, upgrade EMC Secure Remote Services Virtual Edition to version 3.04 or later.
CVE-2015-0525 affects EMC Secure Remote Services versions 3.02 and 3.03.
Yes, CVE-2015-0525 can be exploited remotely by attackers with access to the Gateway Provisioning service.
Exploitation of CVE-2015-0525 could lead to unauthorized system access and the execution of arbitrary commands.