Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-29499

Опубликовано: 19 июл. 2021
Источник: nvd
CVSS3: 6.4
CVSS3: 6.7
CVSS2: 7.2
EPSS Низкий

Описание

Dell EMC PowerStore versions prior to 1.0.3.0.5.006 contain an OS Command Injection vulnerability in PowerStore X environment . A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:h:dell:emc_powerstore:*:*:*:*:*:*:*:*
Версия до 1.0.3.0.5.007 (исключая)

EPSS

Процентиль: 37%
0.00161
Низкий

6.4 Medium

CVSS3

6.7 Medium

CVSS3

7.2 High

CVSS2

Дефекты

CWE-78
CWE-78

Связанные уязвимости

github
больше 3 лет назад

Dell EMC PowerStore versions prior to 1.0.3.0.5.006 contain an OS Command Injection vulnerability in PowerStore X environment . A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.

EPSS

Процентиль: 37%
0.00161
Низкий

6.4 Medium

CVSS3

6.7 Medium

CVSS3

7.2 High

CVSS2

Дефекты

CWE-78
CWE-78