Hard-coded Cryptographic Key Vulnerability in Dell EMC OpenManage Integration for Microsoft System Center
CVE-2020-5374
8.8HIGH
Key Information:
- Vendor
- Dell
- Vendor
- CVE Published:
- 14 July 2020
Summary
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) versions prior to 7.2.1 are affected by a vulnerability involving a hard-coded cryptographic key. This allows a remote unauthenticated attacker to exploit the system and potentially gain access to sensitive appliance data for devices managed remotely. Organizations using these affected versions should prioritize updates to mitigate this security risk.
Affected Version(s)
OMIMSSC (OpenManage Integration for Microsoft System Center) < 7.2.1
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved