CVE-2021-36328

HIGH

Dell EMC Streaming Data Platform <1.3 - SQL Injection

Title source: llm
STIX 2.1

Description

Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability. A remote malicious user may potentially exploit this vulnerability to execute SQL commands to perform unauthorized actions and retrieve sensitive information from the database.

Scores

CVSS v3 8.8
EPSS 0.0037
EPSS Percentile 58.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89 CWE-598
Status published
Products (1)
dell/emc_streaming_data_platform < 1.3
Published Nov 30, 2021
Tracked Since Feb 18, 2026