Vulnerability Details CVE-2017-4987
In EMC VNX2 versions prior to OE for File 8.1.9.211 and VNX1 versions prior to OE for File 7.1.80.8, a local authenticated user can load a maliciously crafted file in the search path which may potentially allow the attacker to execute arbitrary code on the targeted VNX Control Station system, aka an uncontrolled search path vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.5%
CVSS Severity
CVSS v3 Score 7.3
CVSS v2 Score 4.4
Products affected by CVE-2017-4987
-
-
-
cpe:2.3:o:emc:vnx1_firmware:-
-
cpe:2.3:o:emc:vnx2_firmware:-