- Description
- Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability. A local low-privileged user of the Networker server could potentially exploit this vulnerability to read plain-text credentials from server log files.
- Source
- security_alert@emc.com
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 2.1
- Impact score
- 2.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:N/A:N
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:dell:emc_networker:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "59F3B6FF-1F58-4C4E-8268-D67DCCF6538D",
"versionEndExcluding": "19.3.0.4",
"versionStartIncluding": "19.1.1.0"
},
{
"criteria": "cpe:2.3:a:dell:emc_networker:18.1.0.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "17A93558-9719-44A4-A2F8-8F878F41ABEC"
},
{
"criteria": "cpe:2.3:a:dell:emc_networker:18.1.0.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "975A54D6-D1FC-4F4A-984A-247659D2141D"
},
{
"criteria": "cpe:2.3:a:dell:emc_networker:18.2.0.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3744D101-DEED-4256-8755-938395AAE1A8"
},
{
"criteria": "cpe:2.3:a:dell:emc_networker:19.4.0.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "60AE0BA7-E6D5-45FB-B992-0EB7E6234B15"
}
],
"operator": "OR"
}
]
}
]