PT-2020-18449 · Dell Emc · Dell Emc Openmanage Integration For Microsoft System Center
Published
2020-10-08
·
Updated
2020-10-19
·
CVE-2020-5389
CVSS v3.1
9.0
Critical
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1
Description
The issue allows authenticated low privileged OMIMSCC users to potentially retrieve sensitive information from the logs. This is an information disclosure vulnerability.
Recommendations
For versions prior to 7.2.1, update to version 7.2.1 or later to resolve the issue.
Fix
Insertion into Log File
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Emc Openmanage Integration For Microsoft System Center