Aller au contenu

Fiche vulnérabilité

CVE-2020-5351 : faille élevée dell emc data protection advisor (CVSS 7.5)

Description

Dell EMC Data Protection Advisor versions 6.4, 6.5 and 18.1 contain an undocumented account with limited privileges that is protected with a hard-coded password. A remote unauthenticated malicious user with the knowledge of the hard-coded password may login to the system and gain read-only privileges.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
28 juil. 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • dell emc data protection advisor

Références

Rechercher une autre vulnérabilité dans la base CVE