CVE-2016-6649: Dell RecoverPoint For Virtual Machines

Medium severity, CVSS 6.7. EPSS: 0.9% chance of exploitation in the next 30 days.

EMC RecoverPoint versions before 4.4.1.1 and EMC RecoverPoint for Virtual Machines versions before 5.0 are affected by multiple command injection vulnerabilities where a malicious administrator with configuration privileges may bypass the user interface and escalate his privileges to root.

Affected products

  • Dell RecoverPoint For Virtual Machines: up to and including 4.0
  • Emc RecoverPoint: up to and including 4.4.1.0

Published 2017-02-03. Last modified 2026-07-10.