← Back

CVE-2019-3736

nvd nist
Published: Sep 27, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM component. A remote authenticated malicious user with root privileges may potentially use a support tool to decrypt encrypted passwords stored locally on the system to use it to access other components using the privileges of the compromised user.

Affected (3)

1 product
Configuration A
3 vulnerable · 4 platform
Vulnerable SoftwareAffected Versions
Dell
Version 2.0
Version 2.1
Version 2.2
Running on/withPlatform Versions
Dell
Emc Idpa Dp4400
All versions
Dell
Emc Idpa Dp5800
All versions
Dell
Emc Idpa Dp8300
All versions
Dell
Emc Idpa Dp8800
All versions

Timeline

No history available yet.