Arbitrary File Creation Vulnerability in Dell EMC CloudLink
CVE-2021-36314

7.1HIGH

Key Information:

Vendor
Dell
Vendor
CVE Published:
23 November 2021

Summary

Dell EMC CloudLink versions 7.1 and earlier are susceptible to an arbitrary file creation vulnerability. This issue allows a remote unauthenticated attacker to exploit the system, potentially leading to the execution of arbitrary files on the user's system. The vulnerability poses serious risks as attackers can manipulate file creation processes to execute malicious code, thereby compromising system integrity and confidentiality.

Affected Version(s)

CloudLink < 7.1.1

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.