CVE-2012-0406

The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that (1) lacks a password field or (2) has an empty password.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:emc:data_protection_advisor:5.6:*:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.6:sp1:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.7:*:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.7:sp1:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.5:sp1:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.8:*:*:*:*:*:*:*
cpe:2.3:a:emc:data_protection_advisor:5.8:sp1:*:*:*:*:*:*

Information

Published : 2012-04-19 21:02

Updated : 2012-08-13 20:33


NVD link : CVE-2012-0406

Mitre link : CVE-2012-0406


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

emc

  • data_protection_advisor