CVE-2014-0633: Emc Vplex Geosynchrony

High severity, CVSS 7.7. EPSS: 0.8% chance of exploitation in the next 30 days.

The GUI in EMC VPLEX GeoSynchrony 4.x and 5.x before 5.3 does not properly validate session-timeout values, which might make it easier for remote attackers to execute arbitrary code by leveraging an unattended workstation.

Affected products

  • Emc Vplex Geosynchrony: version 4.0 only; version 5.0 only; version 5.1 only; version 5.2 only; version 5.2.1 only

Published 2014-04-01. Last modified 2026-06-17.