An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Appliance 2.0. A remote authenticated malicious user with low privileges could potentially upload arbitrary maliciously crafted files in any location on the server file system.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
18
Affected Products
6
References
emc / avamar_server
| - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | avamar_server | - | - |
| emc | integrated_data_protection_appliance | - | - |
| emc | networker | - | - |
| emc | networker | - | - |
| emc | networker | - | - |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability
Impact