Dell EMC PowerFlex, v3.5.x contain a Cross-Site WebSocket Hijacking Vulnerability in the Presentation Server/WebUI. An unauthenticated attacker could potentially exploit this vulnerability by tricking the user into performing unwanted actions on the Presentation Server and perform which may lead to configuration changes.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2021-07-12T15:40:14.345151Z

Updated: 2024-09-17T00:15:37.249Z

Reserved: 2021-01-04T00:00:00

Link: CVE-2021-21588

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-07-12T16:15:08.593

Modified: 2021-07-14T15:15:32.417

Link: CVE-2021-21588

cve-icon Redhat

No data.