The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that (1) lacks a password field or (2) has an empty password.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-04-19 21:02
Updated : 2012-08-13 20:33
NVD link : CVE-2012-0406
Mitre link : CVE-2012-0406
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
emc
- data_protection_advisor