CVE-2021-21588
6.5MEDIUMDell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking
Publicado: 7/12/2021Atualizado: 11/21/2024
Descrição
Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking the user into performing unwanted actions on the Presentation Server and perform which may lead to configuration changes.
Análise IADesenvolvido por IA
Produtos Afetados
dellpowerflex_presentation_server
Referências
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory