CVE-2014-4634: Emc Appsync

Medium severity, CVSS 4.6. EPSS: 0.4% chance of exploitation in the next 30 days.

Unquoted Windows search path vulnerability in EMC Replication Manager through 5.5.2 and AppSync before 2.1.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

Affected products

  • Emc Appsync: up to and including 2.0
  • Emc Replication Manager: up to and including 5.5.2; version 5.0 only; version 5.1 only; version 5.2 only; version 5.3 only; version 5.4 only; …

Published 2014-12-30. Last modified 2026-06-17.