漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Dell EMC NetWorker versions between 9.0 and 9.1.1.8 through 9.2.1.3, and the version 18.1.0.1 contain a Clear-Text authentication over network vulnerability in the Rabbit MQ Advanced Message Queuing Protocol (AMQP) component. User credentials are sent unencrypted to the remote AMQP service. An unauthenticated attacker in the same network collision domain, could potentially sniff the password from the network and use it to access the component using the privileges of the compromised user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dell EMC NetWorker Rabbit MQ Advanced Message Queuing Protocol组件安全漏洞
Vulnerability Description
Dell EMC NetWorker是美国戴尔(Dell)公司的一套统一备份和恢复软件。该软件提供备份与恢复、消除重复数据、备份报告等功能。Rabbit MQ Advanced Message Queuing Protocol(AMQP)是其中的一个高级消息队列协议组件。 Dell EMC NetWorker中的Rabbit MQ AMQP组件存在安全漏洞,该漏洞源于用户凭证未经加密就发送到远程AMQP服务。攻击者可利用该漏洞从网络中嗅探密码,并使用该密码访问组件。
CVSS Information
N/A
Vulnerability Type
N/A