First published: Fri Sep 27 2019(Updated: )
Dell EMC ECS versions prior to 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Elastic Cloud Storage | <3.4.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3766 is classified as a medium severity vulnerability.
To fix CVE-2019-3766, upgrade to Dell EMC ECS version 3.4.0.0 or later.
Dell EMC ECS users running versions prior to 3.4.0.0 are affected by CVE-2019-3766.
CVE-2019-3766 allows an unauthenticated remote attacker to perform a password brute-force attack.
CVE-2019-3766 involves an improper restriction of excessive authentication attempts.