CVE-2021-21546
HIGHDell Emc Networker < 19.3.0.4 - Log Information Exposure
Title source: ruleDescription
Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability. A local low-privileged user of the Networker server could potentially exploit this vulnerability to read plain-text credentials from server log files.
References (1)
Core 1
Core References
Patch, Vendor Advisory x_refsource_misc
https://www.dell.com/support/kbdoc/en-us/000185470/dsa-2021-081-dell-emc-networker-security-update-for-a-clear-text-vulnerability
Scores
CVSS v3
7.8
EPSS
0.0004
EPSS Percentile
12.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-532
Status
published
Products (5)
dell/emc_networker
18.1.0.1
dell/emc_networker
18.1.0.2
dell/emc_networker
18.2.0.0
dell/emc_networker
19.4.0.0
dell/emc_networker
19.1.1.0 - 19.3.0.4
Published
Jul 29, 2021
Tracked Since
Feb 18, 2026