Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerability when the Dell Upgrade Readiness Utility is run on the system. The credentials of the Unisphere Administrator are stored in plain text. A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
References
Link Resource
https://www.dell.com/support/kbdoc/000185484 Patch Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: dell

Published: 2021-04-19T00:00:00

Updated: 2021-04-30T21:10:19

Reserved: 2021-01-04T00:00:00


Link: CVE-2021-21547

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-04-30T21:15:08.937

Modified: 2021-05-11T12:51:47.480


Link: CVE-2021-21547

JSON object: View

cve-icon Redhat Information

No data.

CWE