Learn about CVE-2020-5345, an authorization bypass vulnerability in Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17. Find out the impact, affected systems, and mitigation steps.
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an authorization bypass vulnerability that could allow an authenticated malicious user to execute unauthorized commands.
Understanding CVE-2020-5345
This CVE involves an authorization bypass vulnerability in Dell EMC Unisphere for PowerMax and PowerMax OS Release 5978.
What is CVE-2020-5345?
CVE-2020-5345 is an authorization bypass vulnerability in Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, allowing authenticated malicious users to execute unauthorized commands.
The Impact of CVE-2020-5345
The vulnerability has a CVSS base score of 6.4, indicating a medium severity level. An attacker could potentially alter or stop database statistics, impacting the integrity of the system.
Technical Details of CVE-2020-5345
This section provides more technical insights into the vulnerability.
Vulnerability Description
The vulnerability allows authenticated malicious users to execute unauthorized commands, potentially affecting database statistics.
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
To address CVE-2020-5345, follow these mitigation strategies:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates