CVE-2016-0904
21.09.2016, 02:59
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 use the same encryption key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms and obtain sensitive client-server traffic information by leveraging knowledge of this key from another installation.Enginsight
Vendor | Product | Version |
---|---|---|
emc | avamar_server | 𝑥 ≤ 7.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration