Dell EMC Data Protection Advisor versions 6.4, 6.5 and 18.1 contain an undocumented account with limited privileges that is protected with a hard-coded password. A remote unauthenticated malicious user with the knowledge of the hard-coded password may login to the system and gain read-only privileges.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-07-28 00:15
Updated : 2021-08-06 17:14
NVD link : CVE-2020-5351
Mitre link : CVE-2020-5351
JSON object : View
Products Affected
dell
- emc_data_protection_advisor
CWE
CWE-798
Use of Hard-coded Credentials
