CVE-2019-3704
CVE-2019-3704
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.8EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
07 feb 2019Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability. Due to inadequate restriction configured in sudores, a local authenticated malicious user could potentially execute arbitrary OS commands as root by exploiting this vulnerability.
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Dell EMC · VNX Control Station in Dell EMC VNX2 OE for File¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →