CVE-2017-8007

8.8 HIGH
Published: September 22, 2017 Modified: May 13, 2026
View on NVD

Description

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is affected by a directory traversal vulnerability. Attackers with knowledge of Webservice Gateway credentials could potentially exploit this vulnerability to access unauthorized information, and modify or delete data, by supplying specially crafted strings in input parameters of the web service call.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://seclists.org/fulldisclosure/2017/Sep/51
Source: security_alert@emc.com
Mailing List Third Party Advisory
http://www.securityfocus.com/bid/100957
Source: security_alert@emc.com
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039417
Source: security_alert@emc.com
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039418
Source: security_alert@emc.com
Third Party Advisory VDB Entry
http://seclists.org/fulldisclosure/2017/Sep/51
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List Third Party Advisory
http://www.securityfocus.com/bid/100957
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039417
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1039418
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry

8 reference(s) from NVD

Quick Stats

CVSS v3 Score
8.8 / 10.0
EPSS (Exploit Probability)
3.0%
85th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

dell