Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-23j7-qm67-668g

Опубликовано: 19 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communication Channel vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.

Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communication Channel vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.

EPSS

Процентиль: 15%
0.00047
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-940

Связанные уязвимости

CVSS3: 4.7
nvd
около 1 месяца назад

Dell PowerProtect Data Manager, version(s) prior to 19.22, contain(s) an Improper Verification of Source of a Communication Channel vulnerability in the REST API. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.

EPSS

Процентиль: 15%
0.00047
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-940