EMC.AlphaStor.Library.Manager.Arbitrary.Command.Execution

description-logoDescription

This indicates an attack attempt against an Arbitrary Command Execution vulnerability in EMC AlphaStor.
The vulnerability is caused by the improper validation of requests prior to them being passed as arguments. Remote attackers can exploit this to execute arbitrary commands on vulnerable systems.

affected-products-logoAffected Products

EMC AlphaStor 3.1 SP1
EMC AlphaStor 4.0 prior to build 800

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Refer to the vendor's website for a patch.
http://www.emc.com
Apply the latest update from the vendor.
http://seclists.org/bugtraq/2013/Jan/att-78/ESA-2012-008.txt

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)