CVE-2013-0944: Emc Avamar

Low severity, CVSS 3.5. EPSS: 0.9% chance of exploitation in the next 30 days.

The web-based file-restore interface in EMC Avamar Server before 6.1.0 allows remote authenticated users to read arbitrary files via a crafted URL.

Affected products

  • Emc Avamar: version 5.0 only; version 5.0.0-407 only; version 5.0.4-26 only; version 6.0 only; version 6.0.1 only; version 6.0.2 only; …

Published 2013-05-03. Last modified 2026-06-16.