Dell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to perform port scanning of internal networks and make HTTP requests to an arbitrary domain of the attacker's choice.
References
Configurations
History
21 Nov 2024, 06:13
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.dell.com/support/kbdoc/en-in/000193697/dsa-2021-205-dell-emc-streaming-data-platform-security-update-for-third-party-vulnerabilities - Vendor Advisory |
Information
Published : 2021-11-30 21:15
Updated : 2024-11-21 06:13
NVD link : CVE-2021-36327
Mitre link : CVE-2021-36327
CVE.ORG link : CVE-2021-36327
JSON object : View
Products Affected
dell
- emc_streaming_data_platform
CWE
CWE-918
Server-Side Request Forgery (SSRF)