Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7w8-7w4q-9j7c

Опубликовано: 22 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

EPSS

Процентиль: 11%
0.00037
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-256
CWE-522

Связанные уязвимости

CVSS3: 6.7
nvd
около 4 лет назад

Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

EPSS

Процентиль: 11%
0.00037
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-256
CWE-522