Dell EMC XtremIO XMS versions prior to 6.3.0 contain an incorrect permission assignment vulnerability. A malicious local user with XtremIO xinstall privileges may exploit this vulnerability to gain root access.
References
Configurations
Information
Published : 2020-03-13 14:15
Updated : 2020-03-18 09:09
NVD link : CVE-2019-18577
Mitre link : CVE-2019-18577
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
dell
- xtremio_management_server