Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit.
History

Mon, 16 Sep 2024 18:00:00 +0000

Type Values Removed Values Added
Description Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit. Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2020-06-23T20:00:17.667661Z

Updated: 2024-09-16T17:58:28.646Z

Reserved: 2020-01-03T00:00:00

Link: CVE-2020-5367

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-06-23T20:15:13.363

Modified: 2024-11-21T05:34:00.637

Link: CVE-2020-5367

cve-icon Redhat

No data.