CVE-2021-21588
6.5MEDIUMDell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking
Опубликовано: 7/12/2021Обновлено: 11/21/2024
Описание
Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking the user into performing unwanted actions on the Presentation Server and perform which may lead to configuration changes.
ИИ-АнализНа базе ИИ
Затронутые продукты
dellpowerflex_presentation_server
Ссылки
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory
- https://www.dell.com/support/kbdoc/000189265Vendor Advisory