CVE-2020-29499

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
19/07/2021
Last modified:
28/07/2021

Description

Dell EMC PowerStore versions prior to 1.0.3.0.5.006 contain an OS Command Injection vulnerability in PowerStore X environment . A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:dell:emc_powerstore:*:*:*:*:*:*:*:* 1.0.3.0.5.007 (excluding)


References to Advisories, Solutions, and Tools