CVE-2020-5351
HIGHDell EMC Data Protection Advisor <6.4,6.5,18.1 - Info Disclosure
Title source: llmDescription
Dell EMC Data Protection Advisor versions 6.4, 6.5 and 18.1 contain an undocumented account with limited privileges that is protected with a hard-coded password. A remote unauthenticated malicious user with the knowledge of the hard-coded password may login to the system and gain read-only privileges.
Scores
CVSS v3
7.5
EPSS
0.0029
EPSS Percentile
52.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-259
Status
published
Products (3)
dell/emc_data_protection_advisor
6.4
dell/emc_data_protection_advisor
6.5
dell/emc_data_protection_advisor
18.1
Published
Jul 28, 2021
Tracked Since
Feb 18, 2026