CVE-2021-36312

CRITICAL

Dell EMC CloudLink <7.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability. A remote high privileged attacker, with the knowledge of the hard-coded credentials, may potentially exploit this vulnerability to gain unauthorized access to the system.

Scores

CVSS v3 9.1
EPSS 0.0021
EPSS Percentile 42.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Details

CWE
CWE-259
Status published
Products (1)
dell/cloudlink < 7.1.1
Published Nov 23, 2021
Tracked Since Feb 18, 2026