Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) a Generation of Incorrect Security Tokens vulnerability in the IAM. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
CWE-1270
Vulnerability Title
Dell PowerProtect Data Manager 授权问题漏洞
Vulnerability Description
Dell powerprotect data manager是美国Dell公司的一个数据管理软件。 Dell PowerProtect Data Manager 20.2.0.0之前版本存在授权问题漏洞,该漏洞源于IAM组件中生成不正确安全令牌,可能导致低权限的攻击者利用远程访问提升权限。
CVSS Information
N/A
Vulnerability Type
N/A