Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7wx-2q75-9872

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM component. A remote authenticated malicious user with root privileges may potentially use a support tool to decrypt encrypted passwords stored locally on the system to use it to access other components using the privileges of the compromised user.

Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM component. A remote authenticated malicious user with root privileges may potentially use a support tool to decrypt encrypted passwords stored locally on the system to use it to access other components using the privileges of the compromised user.

EPSS

Процентиль: 22%
0.00073
Низкий

Дефекты

CWE-327

Связанные уязвимости

CVSS3: 7.2
nvd
больше 6 лет назад

Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM component. A remote authenticated malicious user with root privileges may potentially use a support tool to decrypt encrypted passwords stored locally on the system to use it to access other components using the privileges of the compromised user.

EPSS

Процентиль: 22%
0.00073
Низкий

Дефекты

CWE-327