Networker

Vendor:

First CVE: Nov 21, 2001 · Active for 24 years

20
Total CVEs
More Total CVEs than 94% of tracked products
1.8
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 46% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Networker over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 21, 2001
24 years ago
Most Recent CVE
Jan 5, 2018
3,122 days ago

CVE Severity & Scoring

Networker20 CVEs
All CVEs352,294 CVEs
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network5 (25.0%)
Unknown15 (75.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (20.0%)
High1 (5.0%)
Unknown15 (75.0%)
User Interaction
None5 (25.0%)
Unknown15 (75.0%)
Required0 (0.0%)
Privileges Required
Low2 (10.0%)
High0 (0.0%)
None3 (15.0%)
Unknown15 (75.0%)

Top CVEs

Signals from CVEs in this product scope (20 CVEs).

20 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via f
Sep 4, 20129.366NOYES
EMC NetWorker 8.2.1.x and 8.2.2.x before 8.2.2.6 and 9.x before 9.0.0.6 mishandles authentication, which allows remote attackers to execute arbitrary commands by leveraging access
Jun 10, 20169.833NONO
An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Applianc
Jan 5, 20189.832NONO
An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Applianc
Jan 5, 20188.831NONO
An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, 7.4.x, 7.5.0; EMC NetWorker Virtual Edition (NVE) 9.0.x, 9.1.x, 9.2.x; and EMC Integrated Data Protection Applianc
Jan 5, 20188.830NONO
Buffer overflow in nsrindexd in EMC NetWorker 7.5.x and 7.6.x before 7.6.5, and 8.x before 8.0.0.6, allows remote attackers to execute arbitrary code via crafted SunRPC data.
Jan 17, 20139.329NONO
An issue was discovered in EMC NetWorker (prior to 8.2.4.9, all supported 9.0.x versions, prior to 9.1.1.3, prior to 9.2.0.4). The Server service (nsrd) is affected by a buffer ove
Oct 18, 20178.127NONO
Buffer overflow in the server in EMC NetWorker 7.5.x and 7.6.x before 7.6.3 SP1 Cumulative Release build 851 allows remote attackers to cause a denial of service (daemon crash) or
Jan 27, 20129.327NONO
The Management Console server in EMC NetWorker (formerly Legato NetWorker) 7.3.2 before Jumbo Update 1 uses weak authentication, which allows remote attackers to execute arbitrary
Mar 2, 200710.026NONO
Legato Networker before 6.1 allows remote attackers to bypass access restrictions and gain privileges on the Networker interface by spoofing the admin server name and IP address an
Nov 21, 20017.525NONO

Exploit Exposure

Signals from CVEs in this product scope (20 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
5.0% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
5.0% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (20 CVEs).

Media Mentions

Signals from CVEs in this product scope (20 CVEs).

Top CNAs Publishing CVEs For Networker

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.2.0.318.13.2%00
9.2.0.218.13.2%00
9.2.0.118.13.2%00
9.239.16.2%00
9.1.1.218.13.2%00
9.1.1.118.13.2%00
9.1.0.618.13.2%00
9.1.0.518.13.2%00
9.1.0.418.13.2%00
9.1.0.318.13.2%00
9.139.16.2%00
9.0.1.918.13.2%00
9.0.1.818.13.2%00
9.0.1.718.13.2%00
9.0.1.618.13.2%00
9.0.1.518.13.2%00
9.0.1.418.13.2%00
9.0.1.318.13.2%00
9.0.1.218.13.2%00
9.0.1.118.13.2%00