CVE-2019-3737

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
19/06/2019
Last modified:
02/11/2021

Description

Dell EMC Avamar ADMe Web Interface 1.0.50 and 1.0.51 are affected by an LFI vulnerability which may allow a malicious user to download arbitrary files from the affected system by sending a specially crafted request to the Web Interface application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:avamar_data_migration_enabler_web_interface:1.0.50:*:*:*:*:*:*:*
cpe:2.3:a:dell:avamar_data_migration_enabler_web_interface:1.0.51:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools