← Back

CVE-2019-3765

nvd nist
Published: Oct 9, 2019Modified: Nov 21, 2024

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: NVD

Description

Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1, 2.2, 2.3 and 2.4 contain an Incorrect Permission Assignment for Critical Resource vulnerability. A remote authenticated malicious user potentially could exploit this vulnerability to view or modify sensitive backup data. This could be used to make backups corrupt or potentially to trick a user into restoring a backup with malicious files in place.

Affected (6)

2 products
Emc Avamar Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Dell
Version 18.2
Version 19.1
Version 7.4.1
Version 7.5.0
Version 7.5.1
From 2.0 to 2.4

Timeline

No history available yet.