« Volver al listado

CVE-2017-4983

Estado: ModificadaMedia (6.7)—

EMC Data Domain OS 5.2 through 5.7 before 5.7.3.0 and 6.0 before 6.0.1.0 is affected by a privilege escalation vulnerability that may potentially be exploited by attackers to compromise the affected system.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2017-4983",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 4.6,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 6.7,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 0.8
      }
    ]
  },
  "affected": [
    {
      "source": "security_alert@emc.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "EMC Data Domain OS 5.2 through 5.7 before 5.7.3.0 and 6.0 before 6.0.1.0",
          "versions": [
            {
              "status": "affected",
              "version": "EMC Data Domain OS 5.2 through 5.7 before 5.7.3.0 and 6.0 before 6.0.1.0"
            }
          ]
        }
      ]
    }
  ],
  "published": "2017-05-04T14:29:00.153",
  "references": [
    {
      "url": "http://www.securityfocus.com/archive/1/540517/30/0/threaded",
      "tags": [
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "security_alert@emc.com"
    },
    {
      "url": "http://www.securityfocus.com/bid/98047",
      "tags": [
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "security_alert@emc.com"
    },
    {
      "url": "http://www.securitytracker.com/id/1038404",
      "source": "security_alert@emc.com"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/540517/30/0/threaded",
      "tags": [
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/98047",
      "tags": [
        "Third Party Advisory",
        "VDB Entry"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securitytracker.com/id/1038404",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "EMC Data Domain OS 5.2 through 5.7 before 5.7.3.0 and 6.0 before 6.0.1.0 is affected by a privilege escalation vulnerability that may potentially be exploited by attackers to compromise the affected system."
    },
    {
      "lang": "es",
      "value": "El sistema operativo EMC Data Domain entre las versiónes 5.2 y 5.7 y las anteriores a la 5.7.3.0,y entre la versión 6.0 y la 6.0.1.0, se ve afectado por una vulnerabilidad de escalamiento de privilegios que puede ser explotada por los atacantes para comprometer el sistema afectado."
    }
  ],
  "lastModified": "2026-06-17T01:19:40.987",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:5.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E2164BB5-BB03-40AC-8516-D6B1F391A14B"
            },
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:5.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4F1B32F0-314B-4461-A25C-B44D05A58A8B"
            },
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:5.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "04030715-63F7-4DD1-9513-2E131BD9B13D"
            },
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:5.6:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "846D0C1D-F93E-4685-9DFA-90FCD360F41B"
            },
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:5.7:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2E70A9F7-A09A-4E69-ABE7-A624CC00D1BB"
            },
            {
              "criteria": "cpe:2.3:o:dell:emc_data_domain_os:6.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "22581424-17D9-4520-BB2D-BD083DE6B964"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security_alert@emc.com"
}