Dell EMC NetWorker versions prior to 19.3.0.2 contain an incorrect privilege assignment vulnerability. A non-LDAP remote user with low privileges may exploit this vulnerability to perform 'saveset' related operations in an unintended manner. The vulnerability is not exploitable by users authenticated via LDAP.
References
Configurations
Information
Published : 2020-10-16 11:15
Updated : 2020-10-21 10:10
NVD link : CVE-2020-26182
Mitre link : CVE-2020-26182
JSON object : View
CWE
CWE-552
Files or Directories Accessible to External Parties
Products Affected
dell
- emc_networker