漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) a Generation of Incorrect Security Tokens vulnerability in the IAM. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
CWE-1270
Vulnerability Title
Dell PowerProtect Data Manager 授权问题漏洞
Vulnerability Description
Dell powerprotect data manager是美国Dell公司的一个数据管理软件。 Dell PowerProtect Data Manager 20.2.0.0之前版本存在授权问题漏洞,该漏洞源于IAM组件中生成不正确安全令牌,可能导致低权限的攻击者利用远程访问提升权限。
CVSS Information
N/A
Vulnerability Type
N/A