- Description
- Dell Power Protect Cyber Recovery, contains an Authentication Bypass vulnerability. An attacker could potentially exploit this vulnerability, leading to unauthorized admin access to the Cyber Recovery application. Exploitation may lead to complete system takeover by an attacker.
- Source
- security_alert@emc.com
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- security_alert@emc.com
- CWE-644
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:dell:powerprotect_cyber_recovery:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4DD3AEEF-891E-4E8D-AD64-3D02395E2FBD",
"versionEndIncluding": "19.13.0.2",
"versionStartIncluding": "19.4"
}
],
"operator": "OR"
}
]
}
]