CVE-2019-3766: Critical severity dell emc elastic cloud storage vulnerability
Published Sep 27, 2019
·Updated
Dell EMC ECS versions prior to 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.
Affected Software
1 affected component
Dell Emc Elastic Cloud Storage<3.4.0.0
Event History
Sep 27, 2019
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-3766?
CVE-2019-3766 is classified as a medium severity vulnerability.
2
How do I fix CVE-2019-3766?
To fix CVE-2019-3766, upgrade to Dell EMC ECS version 3.4.0.0 or later.
3
Who is affected by CVE-2019-3766?
Dell EMC ECS users running versions prior to 3.4.0.0 are affected by CVE-2019-3766.
4
What kind of attack can be executed due to CVE-2019-3766?
CVE-2019-3766 allows an unauthenticated remote attacker to perform a password brute-force attack.
5
What is the nature of CVE-2019-3766 vulnerability?
CVE-2019-3766 involves an improper restriction of excessive authentication attempts.