Data Protection Central versions 1.0, 1.0.1, 18.1, 18.2, and 19.1 contains an Improper Certificate Chain of Trust Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by obtaining a CA signed certificate from Data Protection Central to impersonate a valid system to compromise the integrity of data.
oryginał ENCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NDell Emc Data Protection Central
APPDell1.01.0.118.118.219.1Dell Emc Integrated Data Protection Appliance
APPDell2.02.12.22.32.4
Powiązane podatności
RCE bez uwierzytelnienia w Dell EMC Avamar Server — command injection
SQL Injection w Dell EMC Avamar Server — nieautoryzowany dostęp do danych
RCE w Dell EMC Avamar Client Manager — zdalny dostęp bez uwierzytelnienia
Brak kontroli dostępu w Dell EMC Avamar Installation Manager — ujawnienie danych uwierzytelniających
Dell EMC Data Protection Search, 19.4 and prior, and IDPA, 2.6.1 and prior, contain an Information Exposure in...