DELL EMC Avamar Server, versions 19.1, 19.2, 19.3, contain a SQL Injection Vulnerability in Fitness Analyzer. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database, causing unauthorized read and write access to application data. Exploitation may lead to leakage or deletion of sensitive backup data; hence the severity is Critical. Dell EMC recommends customers to upgrade at the earliest opportunity.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-01-14T21:10:15.376000Z
Updated: 2024-09-16T19:46:41.061Z
Reserved: 2020-12-03T00:00:00
Link: CVE-2020-29493
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-01-14T21:15:13.397
Modified: 2024-11-21T05:24:06.510
Link: CVE-2020-29493
Redhat
No data.