Description
Dell EMC Repository Manager version 3.4.0 contains a plain-text password storage vulnerability. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application's database with privileges of the compromised account.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-31405 | Dell EMC Repository Manager version 3.4.0 contains a plain-text password storage vulnerability. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application's database with privileges of the compromised account. |
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000197797 |
|
History
No history.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T22:41:04.293Z
Reserved: 2022-03-10T00:00:00.000Z
Link: CVE-2022-26856
No data.
Status : Modified
Published: 2022-04-21T21:15:07.940
Modified: 2024-11-21T06:54:39.263
Link: CVE-2022-26856
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD