Dell SRM versions prior to 4.5.0.1 and Dell SMR versions prior to 4.5.0.1 contain an Untrusted Deserialization Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability, leading to arbitrary privileged code execution on the vulnerable application. The severity is Critical as this may lead to system compromise by unauthenticated attackers.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:48
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-us/000184753/dsa-2021-054-dell-emc-srm-and-dell-emc-storage-monitoring-and-reporting-smr-security-update-for-multiple-vulnerabilities - Patch, Vendor Advisory |
Information
Published : 2021-04-12 20:15
Updated : 2024-11-21 05:48
NVD link : CVE-2021-21524
Mitre link : CVE-2021-21524
CVE.ORG link : CVE-2021-21524
JSON object : View
Products Affected
dell
- storage_resource_manager
- storage_monitoring_and_reporting
CWE
CWE-502
Deserialization of Untrusted Data