![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2012-0406 |
Description: | The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that (1) lacks a password field or (2) has an empty password. |
Test IDs: | None available |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-0406 Bugtraq: 20120418 ESA-2012-018: EMC Data Protection Advisor Multiple Vulnerabilities (Google Search) http://www.securityfocus.com/archive/1/522408/30/0/threaded http://www.exploit-db.com/exploits/18688/ http://aluigi.altervista.org/adv/dpa_1-adv.txt http://www.securitytracker.com/id?1026956 |