Data Protection Central versions 1.0, 1.0.1, 18.1, 18.2, and 19.1 contains an Improper Certificate Chain of Trust Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by obtaining a CA signed certificate from Data Protection Central to impersonate a valid system to compromise the integrity of data.
2020-03-18T19:15:17.437
2024-11-21T04:42:28.897
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:P/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | dell | emc_data_protection_central | 1.0 | Yes |
Application | dell | emc_data_protection_central | 1.0.1 | Yes |
Application | dell | emc_data_protection_central | 18.1 | Yes |
Application | dell | emc_data_protection_central | 18.2 | Yes |
Application | dell | emc_data_protection_central | 19.1 | Yes |
Application | dell | emc_integrated_data_protection_appliance | 2.0 | Yes |
Application | dell | emc_integrated_data_protection_appliance | 2.1 | Yes |
Application | dell | emc_integrated_data_protection_appliance | 2.2 | Yes |
Application | dell | emc_integrated_data_protection_appliance | 2.3 | Yes |
Application | dell | emc_integrated_data_protection_appliance | 2.4 | Yes |