Lucene search

K
cvelistDellCVELIST:CVE-2021-36287
HistoryApr 08, 2022 - 7:50 p.m.

CVE-2021-36287

2022-04-0819:50:21
CWE-78
dell
www.cve.org
2
dell vnx2
remote code execution
unauthenticated users

CVSS3

7.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

AI Score

10

Confidence

High

EPSS

0.004

Percentile

75.1%

Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system.

CNA Affected

[
  {
    "product": "VNX2",
    "vendor": "Dell",
    "versions": [
      {
        "lessThan": "Version 8.1.21.303 (file) Version 5.33.021.5.303 (block)",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

AI Score

10

Confidence

High

EPSS

0.004

Percentile

75.1%

Related for CVELIST:CVE-2021-36287