---
id: CVE-2016-6650
title: >-
  EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual
  Machines versions prior to 5.0 have an SSL Stripping Vulnerability that may
  potentially be exploited by malicious users to compromise the affected system.
summary: >-
  EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual
  Machines versions prior to 5.0 have an SSL Stripping Vulnerability that may
  potentially be exploited by malicious users to compromise the affected system.
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-200
vendor: dell
product: recoverpoint_for_virtual_machines
affected:
  - recoverpoint_for_virtual_machines <= 4.4.1.1
  - recoverpoint <= 4.4.1.1
published: '2017-03-21'
updated: '2026-07-10'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2016-6650'
references:
  - url: 'http://www.securityfocus.com/archive/1/540303/30/0/threaded'
    label: security_alert@emc.com
  - url: 'http://www.securityfocus.com/bid/96156'
    label: security_alert@emc.com
  - url: 'http://www.securitytracker.com/id/1038066'
    label: security_alert@emc.com
  - url: 'http://www.securityfocus.com/archive/1/540303/30/0/threaded'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.securityfocus.com/bid/96156'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.securitytracker.com/id/1038066'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.01404
epssPercentile: 0.70949
ingestedAt: '2026-07-10T15:05:05.591Z'
---

## Overview

EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual Machines versions prior to 5.0 have an SSL Stripping Vulnerability that may potentially be exploited by malicious users to compromise the affected system.

## Affected

- `recoverpoint_for_virtual_machines <= 4.4.1.1`
- `recoverpoint <= 4.4.1.1`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
