Improper Input Validation in Dell EMC OpenManage Enterprise and OpenManage Enterprise-Modular
CVE-2020-5321

7.6HIGH

Key Information:

Vendor
Dell
Vendor
CVE Published:
19 July 2021

Summary

Dell EMC OpenManage Enterprise and OpenManage Enterprise-Modular are affected by an improper input validation vulnerability. This flaw allows a remote authenticated user with high privileges to exploit the system, potentially enabling them to spawn tasks with elevated privileges. This situation poses significant security risks, as it can lead to unauthorized access and manipulation of critical system functions.

Affected Version(s)

Dell OpenManage Enterprise < 3.20

References

CVSS V3.1

Score:
7.6
Severity:
HIGH
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.