CVE-2020-5330
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
Dell EMC Networking X-Series firmware versions 3.0.1.2 and older, Dell EMC Networking PC5500 firmware versions 4.1.0.22 and older and Dell EMC PowerEdge VRTX Switch Modules firmware versions 2.0.0.77 and older contain an information disclosure vulnerability. A remote unauthenticated attacker could exploit this vulnerability to retrieve sensitive data by sending a specially crafted request to the affected endpoints.
Affected (5)
Products: Dell: R1 2210 Firmware, R1 2401 Firmware, Pc5500 Firmware, X1000 Firmware, X4012 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.0.1.2 |
| Running on/with | Platform Versions |
|---|---|
Dell R1 2210 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.0.1.2 |
| Running on/with | Platform Versions |
|---|---|
Dell R1 2401 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.1.0.22 |
| Running on/with | Platform Versions |
|---|---|
Dell Pc5500 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.0.77 |
| Running on/with | Platform Versions |
|---|---|
Dell X1000 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.0.77 |
| Running on/with | Platform Versions |
|---|---|
Dell X4012 | All versions |
References (4)
Source: security_alert@emc.com
ExploitThird Party AdvisoryVDB Entry
Source: security_alert@emc.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.