CVE-2013-0935

EMC Smarts Network Configuration Manager < 9.1 - Unauthenticated Remote Code Execution via Java RMI

Title source: manual
STIX 2.1

Description

EMC Smarts Network Configuration Manager (NCM) before 9.2 does not require authentication for all Java RMI method calls, which allows remote attackers to execute arbitrary code via unspecified vectors.

References (1)

Core 1
Core References
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-03/0135.html

Scores

EPSS 0.0179
EPSS Percentile 83.0%

Details

CWE
CWE-287
Status published
Products (1)
emc/smarts_network_configuration_manager < 9.1
Published Mar 28, 2013
Tracked Since Feb 18, 2026