Home
MEDIUM: 6.6 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:LDefault status
unaffected
Any version before 4.6.0.4
affected
Description
Dell AppSync, version(s) 4.6.0.0, contains an Unrestricted Upload of File with Dangerous Type vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
Problem types
CWE-434: Unrestricted Upload of File with Dangerous Type
Product status
Any version before 4.6.0.4
Credits
Dell would like to thank Ahmed Y. Elmogy for reporting this issue
References
www.dell.com/...rity-update-for-dell-appsync-vulnerabilities