CVE-2014-4634

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/12/2014
Last modified:
12/04/2025

Description

Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:emc:appsync:*:*:*:*:*:*:*:* 2.0 (including)
cpe:2.3:a:emc:replication_manager:*:*:*:*:*:*:*:* 5.5.2 (including)
cpe:2.3:a:emc:replication_manager:5.0:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.1:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.4:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.4.3:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.5:*:*:*:*:*:*:*
cpe:2.3:a:emc:replication_manager:5.5.1:*:*:*:*:*:*:*