CVE-2019-3727
15.05.2019, 16:29
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious boxmgmt user may potentially be able to execute arbitrary commands as root.
Vendor | Product | Version |
---|---|---|
dell | emc_recoverpoint | 𝑥 < 5.1.3 |
dell | recoverpoint_for_virtual_machines | 𝑥 < 5.2.0.2 |
𝑥
= Vulnerable software versions
References