Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2018-15765


Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains an Information Exposure vulnerability. The log file contents store sensitive data including executed commands to generate authentication tokens which may prove useful to an attacker for crafting malicious authentication tokens for querying the application and subsequent attacks.


Published

2018-10-18T22:29:00.630

Last Modified

2024-11-21T03:51:25.700

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 3.4 (LOW)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell emc_secure_remote_services < 3.32.00.08 Yes

References