← All CVEs

CVE-2012-2288

high · 9.3

Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message.

9.3
CVSS
33.1%
EPSS (exploit prob.)
98th
EPSS percentile
2012-09-04
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-134

Affected products

VendorProductAffected versions
emcnetworker7.6.3
emcnetworker7.6.4
emcnetworker8.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-2288