Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1, 2.2, 2.3 and 2.4. contain an XML External Entity(XXE) Injection vulnerability. A remote unauthenticated malicious user could potentially exploit this vulnerability to cause Denial of Service or information exposure by supplying specially crafted document type definitions (DTDs) in an XML request.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-07-16T21:20:09.995409Z
Updated: 2024-09-16T23:40:28.519Z
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-3752
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-07-16T22:15:07.757
Modified: 2024-11-21T04:42:27.913
Link: CVE-2019-3752
Redhat
No data.