← Back

CVE-2012-2282

nvd nist
Published: Jul 16, 2012Modified: Apr 29, 2026

JSON object

Loading...
6.5
Vector
AV:N/AC:L/Au:S/C:P/I:P/A:P
Exploitability: 8.0 / Impact: 6.4
Source: NVD

Description

EMC Celerra Network Server 6.x before 6.0.61.0, VNX 7.x before 7.0.53.2, and VNXe 2.0 and 2.1 before 2.1.3.19077 (aka MR1 SP3.2) and 2.2 before 2.2.0.19078 (aka MR2 SP0.2) do not properly implement NFS access control, which allows remote authenticated users to read or modify files via a (1) NFSv2, (2) NFSv3, or (3) NFSv4 request.

Affected (13)

3 products
Celerra Network Server
Vnx
Vnxe
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Emc
Version 6.0.36.4
Version 6.0.60.2
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Emc
Version 7.0.12.0
Version 7.0.53.1
Configuration C
9 vulnerable
Vulnerable SoftwareAffected Versions
Emc
Version 2.0
Version 2.0 sp1
Version 2.0 sp2
Version 2.0 sp3
Version mr1 sp1
Version mr1 sp2
Version mr1 sp3.1
Version mr1 sp3
Version mr2 sp0.1

Related CWEs

References (4)

Source: security_alert@emc.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.