Critical severity9.8NVD Advisory· Published Jul 17, 2017· Updated May 13, 2026
CVE-2017-8011
CVE-2017-8011
Description
EMC ViPR SRM, EMC Storage M&R, EMC VNX M&R, EMC M&R for SAS Solution Packs (EMC ViPR SRM prior to 4.1, EMC Storage M&R prior to 4.1, EMC VNX M&R all versions, EMC M&R (Watch4Net) for SAS Solution Packs all versions) contain undocumented accounts with default passwords for Webservice Gateway and RMI JMX components. A remote attacker with the knowledge of the default password may potentially use these accounts to run arbitrary web service and remote procedure calls on the affected system.
Affected products
4- cpe:2.3:a:dell:emc_storage_monitoring_and_reporting:4.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:dell:emc_vnx_monitoring_and_reporting:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- seclists.org/fulldisclosure/2017/Jul/21nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/99555nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1038905nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.