Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) 6.x and 7.0.x through 7.0.2-43 do not require authentication for Java API calls, which allows remote attackers to discover grid MCUser and GSAN passwords via a crafted call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC Avamar Data Store和Avamar Virtual Edition 信息泄露漏洞
Vulnerability Description
EMC Avamar Data Store(ADS)和EMC Avamar Virtual Edition(AVE)都是美国易安信(EMC)公司的备份和恢复解决方案。该方案提供数据备份、灾难恢复、消除重复数据等功能。 EMC ADS和AVE 6.x版本和7.0.x版本至7.0.2-43版本中存在安全漏洞,该漏洞源于程序对Java API调用没有执行身份验证。远程攻击者可借助特制的调用利用该漏洞获取grid MCUser和GSAN密码。
CVSS Information
N/A
Vulnerability Type
N/A