CVE-2021-36327

MEDIUM

Dell EMC Streaming Data Platform <1.3 - SSRF

Title source: llm
STIX 2.1

Description

Dell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to perform port scanning of internal networks and make HTTP requests to an arbitrary domain of the attacker's choice.

Scores

CVSS v3 5.3
EPSS 0.0030
EPSS Percentile 53.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-918
Status published
Products (1)
dell/emc_streaming_data_platform < 1.3
Published Nov 30, 2021
Tracked Since Feb 18, 2026