Hard-coded Cryptographic Key Vulnerability in Dell EMC OpenManage Integration for Microsoft System Center
CVE-2020-5374

8.8HIGH

Key Information:

Vendor
Dell
Vendor
CVE Published:
14 July 2020

Summary

Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) versions prior to 7.2.1 are affected by a vulnerability involving a hard-coded cryptographic key. This allows a remote unauthenticated attacker to exploit the system and potentially gain access to sensitive appliance data for devices managed remotely. Organizations using these affected versions should prioritize updates to mitigate this security risk.

Affected Version(s)

OMIMSSC (OpenManage Integration for Microsoft System Center) < 7.2.1

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.