Security Advisory

CVE-2016-0907

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-05-30 01:00:00
Last updated 2024-08-05 22:38:40
Assigner dell
CVSS score not scored
State PUBLISHED

Description

EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream, a similar issue to CVE-2016-2115.