CVE-2012-2290
Estado: ModificadaAlta (9.3)—
The client in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375 allows remote attackers to execute arbitrary code by sending a crafted message over a TCP communication channel.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C
- Puntuación base: 9.3
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 3.63%
- Percentil entre todas las CVEs puntuadas: 89
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-94
Referencias
- http://archives.neohapsis.com/archives/bugtraq/2012-10/0068.html
- http://osvdb.org/86158
- http://secunia.com/advisories/50957
- http://www.securityfocus.com/bid/55883
- http://www.securitytracker.com/id?1027647
- http://archives.neohapsis.com/archives/bugtraq/2012-10/0068.html
- http://osvdb.org/86158
- http://secunia.com/advisories/50957
- http://www.securityfocus.com/bid/55883
- http://www.securitytracker.com/id?1027647
JSON original (NVD)
Mostrar
{
"id": "CVE-2012-2290",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 9.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "security_alert@emc.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2012-10-18T17:55:01.737",
"references": [
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2012-10/0068.html",
"source": "security_alert@emc.com"
},
{
"url": "http://osvdb.org/86158",
"source": "security_alert@emc.com"
},
{
"url": "http://secunia.com/advisories/50957",
"source": "security_alert@emc.com"
},
{
"url": "http://www.securityfocus.com/bid/55883",
"source": "security_alert@emc.com"
},
{
"url": "http://www.securitytracker.com/id?1027647",
"source": "security_alert@emc.com"
},
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2012-10/0068.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://osvdb.org/86158",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/50957",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/55883",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id?1027647",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-94"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "The client in EMC NetWorker Module for Microsoft Applications (NMM) 2.2.1, 2.3 before build 122, and 2.4 before build 375 allows remote attackers to execute arbitrary code by sending a crafted message over a TCP communication channel."
},
{
"lang": "es",
"value": "El cliente de EMC NetWorker Module para Microsoft Applications (NMM) v2.2.1, v2.3 anterior al build v122, y v2.4 anterior al build 375 permite a atacantes remotos ejecutar código arbitrario mediante el envío de un mensaje elaborado por un canal de comunicación TCP."
}
],
"lastModified": "2026-06-16T23:41:17.840",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:emc:networker_module_for_microsoft_applications:2.2.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4D3D6453-4971-4802-B9AA-C30E682A6B4E"
},
{
"criteria": "cpe:2.3:a:emc:networker_module_for_microsoft_applications:2.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9B946CBA-1DBF-4A95-AE52-8A8D7A595F05"
},
{
"criteria": "cpe:2.3:a:emc:networker_module_for_microsoft_applications:2.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB5A268E-D2C6-4D64-B60C-A95C1ECDFD80"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security_alert@emc.com"
}