Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access to the log files may use the exposed passwords to gain access to XtremIO with the privileges of the compromised user.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2020-03-13T20:30:20.768203Z
Updated: 2024-09-16T17:58:07.064Z
Reserved: 2019-10-29T00:00:00
Link: CVE-2019-18576
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-03-13T21:15:11.533
Modified: 2024-11-21T04:33:19.773
Link: CVE-2019-18576
Redhat
No data.