Description
Dell EMC XtremIO Versions prior to 6.3.3-8, contain a Cross-Site Request Forgery Vulnerability in XMS. A non-privileged attacker could potentially exploit this vulnerability, leading to a privileged victim application user being tricked into sending state-changing requests to the vulnerable application, causing unintended server operations.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-8821 | Dell EMC XtremIO Versions prior to 6.3.3-8, contain a Cross-Site Request Forgery Vulnerability in XMS. A non-privileged attacker could potentially exploit this vulnerability, leading to a privileged victim application user being tricked into sending state-changing requests to the vulnerable application, causing unintended server operations. |
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000186363 |
|
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T18:08:03.709Z
Reserved: 2021-01-04T00:00:00.000Z
Link: CVE-2021-21549
No data.
Status : Modified
Published: 2021-05-21T20:15:07.620
Modified: 2024-11-21T05:48:34.457
Link: CVE-2021-21549
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD