Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking the user into performing unwanted actions on the Presentation Server and perform which may lead to configuration changes.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.dell.com/support/kbdoc/000189265 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-07-12T15:40:14.345151Z
Updated: 2024-09-17T00:15:37.249Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21588
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-07-12T16:15:08.593
Modified: 2021-07-14T15:15:32.417
Link: CVE-2021-21588
Redhat
No data.