Information Exposure in Dell EMC Secure Remote Services
CVE-2018-15765
3.4LOW
What is CVE-2018-15765?
Dell EMC Secure Remote Services prior to version 3.32.00.08 exposes sensitive data in its log files, including executed commands used to generate authentication tokens. This exposure could allow an attacker to misuse this information to create malicious authentication tokens, potentially leading to unauthorized access and further attacks on the application. Organizations using affected versions are encouraged to update to mitigate the risks associated with this vulnerability.
Affected Version(s)
ESRS Virtual Edition < 3.32.00.08