CVE-2019-3727
15.05.2019, 16:29
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious boxmgmt user may potentially be able to execute arbitrary commands as root.
| Vendor | Product | Version |
|---|---|---|
| dell | emc_recoverpoint | 𝑥 < 5.1.3 |
| dell | recoverpoint_for_virtual_machines | 𝑥 < 5.2.0.2 |
𝑥
= Vulnerable software versions
References