CVE-2020-5356

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/07/2020
Last modified:
20/07/2020

Description

Dell PowerProtect Data Manager (PPDM) versions prior to 19.4 and Dell PowerProtect X400 versions prior to 3.2 contain an improper authorization vulnerability. A remote authenticated malicious user may download any file from the affected PowerProtect virtual machines.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:powerprotect_data_manager:*:*:*:*:*:*:*:* 19.4 (excluding)
cpe:2.3:o:dell:powerprotect_x400_firmware:*:*:*:*:*:*:*:* 3.2 (excluding)
cpe:2.3:h:dell:powerprotect_x400:-:*:*:*:*:*:*:*