CVE-2021-21588
6.5MEDIUMDell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking
Veröffentlicht: 7/12/2021Aktualisiert: 11/21/2024
Beschreibung
Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking the user into performing unwanted actions on the Presentation Server and perform which may lead to configuration changes.
KI-AnalyseKI-gestützt
Betroffene Produkte
dellpowerflex_presentation_server
Referenzen
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory