LOW · 2.1

CVE-2012-2284

The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375, when Exchange Server is used, allow local user...

Vulnerability Description

The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375, when Exchange Server is used, allow local users to read cleartext administrator credentials via unspecified vectors.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
EmcNetworker Module For Microsoft Applications2.2.1
MicrosoftExchange ServerAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2012-2284?

CVE-2012-2284 is a vulnerability with a CVSS score of 2.1 (LOW). The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375, when Exchange Server is used, allow local user...

How severe is CVE-2012-2284?

CVE-2012-2284 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-2284?

Check the references section above for vendor advisories and patch information. Affected products include: Emc Networker Module For Microsoft Applications, Microsoft Exchange Server.