CVE-2014-4634

EMC Replication Manager <5.5.2, AppSync <2.1.0 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

References (1)

Core 1
Core References
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2014-12/0170.html

Scores

EPSS 0.0006
EPSS Percentile 18.8%

Details

Status published
Products (10)
emc/appsync < 2.0
emc/replication_manager 5.0
emc/replication_manager 5.1
emc/replication_manager 5.2
emc/replication_manager 5.3
emc/replication_manager 5.4
emc/replication_manager 5.4.3
emc/replication_manager 5.5
emc/replication_manager 5.5.1
emc/replication_manager < 5.5.2
Published Dec 30, 2014
Tracked Since Feb 18, 2026