Home
MEDIUM: 4.2 CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:NDefault status
unaffected
Any version before IC 48.378.00
affected
Any version before IC 48.383.00
affected
Default status
unaffected
Any version before 3.7.8.0
affected
Any version before 3.8.3.0
affected
Default status
unaffected
Any version
affected
Description
Dell PowerFlex Manager, version(s) <=4.6.2, contain(s) an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Information tampering.
Problem types
CWE-295: Improper Certificate Validation
Product status
Any version before IC 48.378.00
Any version before IC 48.383.00
Any version before 3.7.8.0
Any version before 3.8.3.0
Any version
References
www.dell.com/...ltiple-third-party-component-vulnerabilities
www.dell.com/...ltiple-third-party-component-vulnerabilities