Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Emc Corporation

First CVE: Nov 21, 2001Active for: 25 yearsTotal CVEs: 418

EMC Corporation's vulnerability profile centers on its AlphaStor backup and archive appliance product, a storage-focused offering serving enterprise data-protection deployments. The recurring weakness classes involve improper input validation and memory-buffer boundary violations, which are characteristic of complex storage-protocol parsing and data-handling code. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
418
Total CVEs
More Total CVEs than 57% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 99% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Emc Corporation over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 21, 2001
24 years ago
Most Recent CVE
Jan 12, 2024
928 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (418 CVEs).

418 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2011-0647HIGH
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary comm
Feb 10, 201110.080NOYES
CVE-2008-2158HIGH
Multiple stack-based buffer overflows in the Command Line Interface process in the Server Agent in EMC AlphaStor 3.1 SP1 for Windows allow remote attackers to execute arbitrary cod
May 29, 200810.076NOYES
CVE-2014-0644HIGH
EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML external entity declaration in conjuncti
Apr 17, 20147.867NOYES
CVE-2018-1235CRITICAL
Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3, contain a command injection vulnerability. An unauthenticated remote attacker may
May 29, 20189.866NOYES
CVE-2012-2288HIGH
Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via f
Sep 4, 20129.366NOYES
CVE-2013-0928HIGH
The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to execute arbitrary commands via a DCP "run comm
Jan 21, 20139.365NOYES
CVE-2009-2754HIGH
Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynam
Mar 5, 201010.057NOYES
CVE-2013-0946HIGH
Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary code via crafted commands.
May 10, 20139.356NOYES
CVE-2008-2157HIGH
robotd in the Library Manager in EMC AlphaStor 3.1 SP1 for Windows allows remote attackers to execute arbitrary commands via an unspecified string field in a packet to TCP port 350
May 29, 200810.054NOYES
CVE-2012-2515HIGH
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help component), as used in EMC Docum
Jul 5, 20129.353NOYES
View all 418 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products418 CVEs
47%
40%
Severity distribution among all CVEs353,240 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local29 (6.9%)
Network113 (27.0%)
Unknown273 (65.3%)
Physical2 (0.5%)
Adjacent Network1 (0.2%)
Attack Complexity
Low134 (32.1%)
High11 (2.6%)
Unknown273 (65.3%)
User Interaction
None104 (24.9%)
Unknown273 (65.3%)
Required41 (9.8%)
Privileges Required
Low55 (13.2%)
High22 (5.3%)
None68 (16.3%)
Unknown273 (65.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (418 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
7 CVEs
1.7% of CVEs· 99th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
24 CVEs
5.7% of CVEs· 81st percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Emc Corporation.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Emc Corporation — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Emc Corporation's Products

View all 8 CNAs →

Top CWEs