HIGH🇵🇱 Wersja polska

CVE-2017-8012

CVSS 7.4v3.1pub. 2017-09-22upd. 2026-05-13

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Java Management Extensions (JMX) protocol used to communicate between components in the Alerting and/or Compliance components can be leveraged to create a denial of service (DoS) condition. Attackers with knowledge of JMX agent user credentials could potentially exploit this vulnerability to create arbitrary files on the affected system and create a DoS condition by leveraging inherent JMX protocol capabilities.

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
  • Dell Emc M\&r

    APP
    Dell
    all versions
  • Dell Emc Storage Monitoring And Reporting

    APP
    Dell
    all versions
  • Dell Emc Vipr Srm

    APP
    Dell
    ≤ 4.0.2
  • Dell Emc Vnx Monitoring And Reporting

    APP
    Dell
    all versions
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoS
CWE
References

Related vulnerabilities

CVE-2019-18580CRITICAL10.0PL ✓same product

RCE przez deserializację Java RMI w Dell EMC Storage Monitoring and Reporting

CVE-2018-1183CRITICAL9.8PL ✓same product

XXE Injection w komponentach ECOM systemów Dell EMC (RCE/ujawnienie danych)

CVE-2017-8011CRITICAL9.8PL ✓same product

Ukryte konta z domyślnymi hasłami w produktach Dell EMC M&R i ViPR SRM

CVE-2017-8007HIGH8.8same product

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is a...

CVE-2026-22769CRITICAL10.0⚠ KEVPL ✓same vendor

Dell RecoverPoint for VMs — zahardkodowane dane uwierzytelniające (RCE, root)