CVE-2015-0538: Command Injection
Published May 7, 2015
·Updated
ftagent.exe in EMC AutoStart 5.4.x and 5.5.x before 5.5.0.508 HF4 allows remote attackers to execute arbitrary commands via crafted packets.
Affected Software
1 affected component
EMC AutoStart<=5.5.0
Event History
May 7, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0538?
CVE-2015-0538 is classified as a high severity vulnerability.
2
How do I fix CVE-2015-0538?
To mitigate CVE-2015-0538, update EMC AutoStart to version 5.5.0.508 HF4 or later.
3
What type of attacks can exploit CVE-2015-0538?
CVE-2015-0538 can be exploited by remote attackers to execute arbitrary commands through crafted packets.
4
Which versions of EMC AutoStart are affected by CVE-2015-0538?
EMC AutoStart versions 5.4.x and 5.5.x before 5.5.0.508 HF4 are affected by CVE-2015-0538.
5
Is CVE-2015-0538 a network vulnerability?
Yes, CVE-2015-0538 is a network vulnerability that allows remote command execution.