CVE-2020-5373

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
14/07/2020
Last modified:
21/07/2020

Description

Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to retrieve the system inventory data of the managed device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:emc_omimssc_for_sccm:*:*:*:*:*:*:*:* 7.2.1 (excluding)
cpe:2.3:a:dell:emc_omimssc_for_scvmm:*:*:*:*:*:*:*:* 7.2.1 (excluding)