PT-2021-21212 · Dell · Dell Networking Os10
Published
2021-11-20
·
Updated
2022-10-27
·
CVE-2021-36310
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Dell Networking OS10 versions 10.4.3.x through 10.5.2.x
Description
The issue is related to an uncontrolled resource consumption flaw in the API service of Dell Networking OS10. A high-privileged API user may potentially exploit this, leading to a denial of service.
Recommendations
For versions 10.4.3.x through 10.5.2.x, consider restricting access to the API service to minimize the risk of exploitation until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Protection Mechanism Failure
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dell Networking Os10