Required CVE Record Information
Description
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 rely on client-side authentication, which allows remote attackers to spoof clients and read backup data via a modified client agent.
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- seclists.org: 20160919 ESA-2016-065: EMC Avamar Data Store and Avamar Virtual Edition Multiple Vulnerabilities mailing-listx_transferred
- securityfocus.com: 93026 vdb-entryx_transferred
- securitytracker.com: 1036844 vdb-entryx_transferred