Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
References
Link | Resource |
---|---|
https://www.dell.com/support/kbdoc/000189204 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-07-12 09:15
Updated : 2022-10-24 13:14
NVD link : CVE-2021-21591
Mitre link : CVE-2021-21591
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
dell
- emc_unity_xt_operating_environment
- emc_unity_operating_environment
- emc_unityvsa_operating_environment