CVE-2020-5365

Dell EMC Isilon versions 8.2.2 and earlier contain a remotesupport vulnerability. The pre-configured support account, remotesupport, is bundled in the Dell EMC Isilon OneFS installation. This account is used for diagnostics and other support functions. Although the default password is different for every cluster, it is predictable.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:emc_isilon_onefs:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:34

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : 7.5
v2 : 5.0
v3 : 5.3
References () https://www.dell.com/support/security/en-us/details/543775/DSA-2020-124-Dell-EMC-Isilon-OneFS-Security-Update-for-Multiple-Vulnerabilities - Vendor Advisory () https://www.dell.com/support/security/en-us/details/543775/DSA-2020-124-Dell-EMC-Isilon-OneFS-Security-Update-for-Multiple-Vulnerabilities - Vendor Advisory

Information

Published : 2020-05-20 21:15

Updated : 2024-11-21 05:34


NVD link : CVE-2020-5365

Mitre link : CVE-2020-5365

CVE.ORG link : CVE-2020-5365


JSON object : View

Products Affected

dell

  • emc_isilon_onefs
CWE
CWE-341

Predictable from Observable State

CWE-330

Use of Insufficiently Random Values