Dell EMC NetWorker, 18.x, 19.1.x, 19.2.x 19.3.x, 19.4 and 19.4.0.1, contains an Information Disclosure vulnerability. A local administrator of the gstd system may potentially exploit this vulnerability to read LDAP credentials from local logs and use the stolen credentials to make changes to the network domain.
References
Link | Resource |
---|---|
https://www.dell.com/support/kbdoc/en-us/000186638/dsa-2021-104-dell-emc-networker-security-update-for-multiple-vulnerabilities | Patch Vendor Advisory |
Configurations
Information
Published : 2021-06-08 11:15
Updated : 2021-06-15 17:29
NVD link : CVE-2021-21558
Mitre link : CVE-2021-21558
JSON object : View
CWE
CWE-532
Insertion of Sensitive Information into Log File
Products Affected
dell
- emc_networker