CVE-2021-36288
Severity CVSS v4.0:
Pending analysis
Type:
CWE-22
Path Traversal
Publication date:
08/04/2022
Last modified:
14/04/2022
Description
Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:dell:emc_unity_operating_environment:*:*:*:*:*:*:*:* | 8.1.21.266 (including) | |
cpe:2.3:h:dell:vnx_vg10:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx_vg50:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx5200:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx5400:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx5600:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx5800:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx7600:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnx8000:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:dell:vnxe1600:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page