EMC Unisphere for VMAX Virtual Appliance (vApp) versions prior to 8.4.0.15, EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.15, EMC VASA Virtual Appliance versions prior to 8.4.0.512, and EMC VMAX Embedded Management (eManagement) versions prior to and including 1.4 (Enginuity Release 5977.1125.1125 and earlier) contain an authentication bypass vulnerability that may potentially be exploited by malicious users to compromise the affected system.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDell Emc Unisphere
APPDell< 8.4.0.15Emc Solutions Enabler
APPEmc< 8.4.0.15Emc Vasa
APPEmc< 8.4.0.512Emc Vmax Emanagement
APPEmc≤ 1.4
Related vulnerabilities
XXE Injection w komponentach ECOM systemów Dell EMC (RCE/ujawnienie danych)
RCE w EMC Unisphere i Solutions Enabler Virtual Appliance przez vApp Manager
Zapis do dowolnych plików w EMC Unisphere for VMAX Virtual Appliance
The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions E...
EMC Unisphere for VMAX poprzedzający wersję 1.6.1.6, gdy używane są nieokreślone poziomy debug loggingu w konf...