Deserialization of Untrusted Data Vulnerability Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2, 19.1 and 19.2 and Dell EMC Integrated Data Protection Appliance versions 2.0, 2.1, 2.2, 2.3, 2.4 and 2.4.1 contain a Deserialization of Untrusted Data Vulnerability. A remote unauthenticated attacker could exploit this vulnerability to send a serialized payload that would execute code on the system.
References
Link | Resource |
---|---|
https://www.dell.com/support/security/en-us/details/541677/DSA-2020-057-Dell-EMC-Avamar-Server-Deserialization-of-Untrusted-Data-Vulnerability | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-07-27 17:15
Updated : 2021-08-05 12:13
NVD link : CVE-2020-5341
Mitre link : CVE-2020-5341
JSON object : View
CWE
CWE-502
Deserialization of Untrusted Data
Products Affected
dell
- emc_avamar_server
- emc_integrated_data_protection_appliance_firmware