Dell EMC InsightIQ, versions prior to 4.1.4, contain risky cryptographic algorithms in the SSH component. A remote unauthenticated attacker could potentially exploit this vulnerability leading to authentication bypass and remote takeover of the InsightIQ. This allows an attacker to take complete control of InsightIQ to affect services provided by SSH; so Dell recommends customers to upgrade at the earliest opportunity.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.dell.com/support/kbdoc/000191604 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-10-01T20:20:58.300366Z
Updated: 2024-09-17T02:36:40.755Z
Reserved: 2021-07-08T00:00:00
Link: CVE-2021-36298
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-10-01T21:15:08.180
Modified: 2021-10-08T03:10:57.680
Link: CVE-2021-36298
Redhat
No data.