CVE-2017-8007: Dell Emc M&r

High severity, CVSS 8.8. EPSS: 3% chance of exploitation in the next 30 days.

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is affected by a directory traversal vulnerability. Attackers with knowledge of Webservice Gateway credentials could potentially exploit this vulnerability to access unauthorized information, and modify or delete data, by supplying specially crafted strings in input parameters of the web service call.

Affected products

  • Dell Emc M&r: any version
  • Dell Emc Storage Monitoring And Reporting: any version
  • Dell Emc Vipr Srm: up to and including 4.0.2
  • Dell Emc Vnx Monitoring And Reporting: any version

Published 2017-09-22. Last modified 2026-06-17.