HIGH🇬🇧 English

CVE-2017-8012

CVSS 7.4v3.1pub. 2017-09-22upd. 2026-05-13

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Java Management Extensions (JMX) protocol used to communicate between components in the Alerting and/or Compliance components can be leveraged to create a denial of service (DoS) condition. Attackers with knowledge of JMX agent user credentials could potentially exploit this vulnerability to create arbitrary files on the affected system and create a DoS condition by leveraging inherent JMX protocol capabilities.

oryginał EN
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
  • Dell Emc M\&r

    APP
    Dell
    wszystkie wersje
  • Dell Emc Storage Monitoring And Reporting

    APP
    Dell
    wszystkie wersje
  • Dell Emc Vipr Srm

    APP
    Dell
    ≤ 4.0.2
  • Dell Emc Vnx Monitoring And Reporting

    APP
    Dell
    wszystkie wersje
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
DoS
CWE
Referencje

Powiązane podatności

CVE-2019-18580CRITICAL10.0PL ✓ten sam produkt

RCE przez deserializację Java RMI w Dell EMC Storage Monitoring and Reporting

CVE-2018-1183CRITICAL9.8PL ✓ten sam produkt

XXE Injection w komponentach ECOM systemów Dell EMC (RCE/ujawnienie danych)

CVE-2017-8011CRITICAL9.8PL ✓ten sam produkt

Ukryte konta z domyślnymi hasłami w produktach Dell EMC M&R i ViPR SRM

CVE-2017-8007HIGH8.8ten sam produkt

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is a...

CVE-2026-22769CRITICAL10.0⚠ KEVPL ✓ten sam vendor

Dell RecoverPoint for VMs — zahardkodowane dane uwierzytelniające (RCE, root)