CVE-2014-0633

Published Apr 1, 2014

Last updated 11 years ago

Overview

Description
The GUI in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 does not properly validate session-timeout values, which might make it easier for remote attackers to execute arbitrary code by leveraging an unattended workstation.
Source
security_alert@emc.com
NVD status
Analyzed

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
7.7
Impact score
10
Exploitability score
5.1
Vector string
AV:A/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-20

Configurations