EMC Networker Module For Microsoft Applications 3 Execute Code Vulnerability
23 Dec. 2016
Summary
The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to execute arbitrary commands by placing a crafted script in an SMB share.
Vulnerable Systems:
* EMC Networker Module For Microsoft Applications 3
* EMC Networker Module For Microsoft Applications 3.0.1
* EMC Networker Module For Microsoft Applications 8.2.3.6
* EMC Replication Manager 5.5.3
EMC Replication Manager (RM)is affected by a remote code execution vulnerability that may be exploited by an attacker to compromise an affected system.
A remote unauthenticated attacker may execute arbitrary commands on an RM Client, with high privileges, by starting a rogue RM Server that connects to the RM Client and executes the malicious script/payload that is placed in an SMB share, by the attacker, that is accessible to the RM Client.