漏洞标题
N/A
漏洞描述信息
戴尔 RecoverPoint for Virtual Machines 6.0.X 存在命令执行漏洞。具有本地访问权限的低权限恶意用户可能通过运行特定的二进制文件来利用此漏洞,执行其允许的任何管理操作,导致服务器关闭、修改配置并最终访问未授权数据。
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
漏洞类别
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
漏洞标题
N/A
漏洞描述信息
Dell RecoverPoint for Virtual Machines 6.0.X contains a command execution vulnerability. A Low privileged malicious user with local access could potentially exploit this vulnerability by running the specific binary and perform any administrative action permitted by it resulting in shutting down the server, modifying the configuration leading to gain access to unauthorized data.
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L
漏洞类别
访问控制不恰当