CVE-2020-5374

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
14/07/2020
Last modified:
21/07/2020

Description

Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain a hard-coded cryptographic key vulnerability. A remote unauthenticated attacker may exploit this vulnerability to gain access to the appliance data for remotely managed devices.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:emc_omimssc_for_sccm:*:*:*:*:*:*:*:* 7.2.1 (excluding)
cpe:2.3:a:dell:emc_omimssc_for_scvmm:*:*:*:*:*:*:*:* 7.2.1 (excluding)