Overview
- Description
- Dell Power Protect Cyber Recovery, contains an Authentication Bypass vulnerability. An attacker could potentially exploit this vulnerability, leading to unauthorized admin access to the Cyber Recovery application. Exploitation may lead to complete system takeover by an attacker.
- Source
- security_alert@emc.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Weaknesses
- security_alert@emc.com
- CWE-644
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:dell:powerprotect_cyber_recovery:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DD3AEEF-891E-4E8D-AD64-3D02395E2FBD", "versionEndIncluding": "19.13.0.2", "versionStartIncluding": "19.4" } ], "operator": "OR" } ] } ]