Injection Vulnerability in Dell EMC OpenManage Enterprise and OpenManage Enterprise-Modular
CVE-2020-5323

5.4MEDIUM

Key Information:

Vendor
Dell
Vendor
CVE Published:
19 July 2021

Summary

Dell EMC OpenManage Enterprise and OpenManage Enterprise-Modular suffer from an injection vulnerability that allows remote authenticated users with low privileges to potentially access sensitive information or disrupt service availability. Prompt updates to newer versions are essential to mitigate this security risk.

Affected Version(s)

Dell OpenManage Enterprise < 3.20

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.