← Back

CVE-2019-18576

nvd nist
Published: Mar 13, 2020Modified: Nov 21, 2024

JSON object

Loading...
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD

Description

Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access to the log files may use the exposed passwords to gain access to XtremIO with the privileges of the compromised user.

Affected (1)

1 product
Xtremio Management Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 6.3.0

Timeline

No history available yet.