Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Sep 2024 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit. | Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit. |
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2020-06-23T20:00:17.667661Z
Updated: 2024-09-16T17:58:28.646Z
Reserved: 2020-01-03T00:00:00
Link: CVE-2020-5367
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-06-23T20:15:13.363
Modified: 2024-11-21T05:34:00.637
Link: CVE-2020-5367
Redhat
No data.