Vulnerability Description
EMC NetWorker 7.5.x before 7.5.4.3 and 7.6.x before 7.6.1.5, when the client push feature is enabled, uses weak permissions for an unspecified file, which allows local users to gain privileges via unknown vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Emc | Networker | 7.5.2.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/44237Vendor Advisory
- http://securityreason.com/securityalert/8214
- http://securitytracker.com/id?1025383
- http://www.securityfocus.com/archive/1/517532/100/0/threaded
- http://www.securityfocus.com/bid/47410
- http://www.vupen.com/english/advisories/2011/1025Vendor Advisory
- http://secunia.com/advisories/44237Vendor Advisory
- http://securityreason.com/securityalert/8214
- http://securitytracker.com/id?1025383
- http://www.securityfocus.com/archive/1/517532/100/0/threaded
- http://www.securityfocus.com/bid/47410
- http://www.vupen.com/english/advisories/2011/1025Vendor Advisory
FAQ
What is CVE-2011-1421?
CVE-2011-1421 is a vulnerability with a CVSS score of 6.9 (MEDIUM). EMC NetWorker 7.5.x before 7.5.4.3 and 7.6.x before 7.6.1.5, when the client push feature is enabled, uses weak permissions for an unspecified file, which allows local users to gain privileges via unk...
How severe is CVE-2011-1421?
CVE-2011-1421 has been rated MEDIUM with a CVSS base score of 6.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-1421?
Check the references section above for vendor advisories and patch information. Affected products include: Emc Networker.