CVE-2020-26182: Medium severity Dell EMC NetWorker vulnerability
Published Oct 16, 2020
·Updated
Dell EMC NetWorker versions prior to 19.3.0.2 contain an incorrect privilege assignment vulnerability. A non-LDAP remote user with low privileges may exploit this vulnerability to perform 'saveset' related operations in an unintended manner. The vulnerability is not exploitable by users authenticated via LDAP.
Affected Software
1 affected component
Dell EMC NetWorker<19.3.0.2
Event History
Oct 16, 2020
CVE Published
via MITRE·06:10 PM
Data Sourced
via MITRE·06:10 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-26182?
The severity of CVE-2020-26182 is classified as medium risk.
2
How do I fix CVE-2020-26182?
To fix CVE-2020-26182, upgrade to Dell EMC NetWorker version 19.3.0.2 or later.
3
Who can exploit CVE-2020-26182?
CVE-2020-26182 can be exploited by non-LDAP remote users with low privileges.
4
What impact does CVE-2020-26182 have on affected systems?
CVE-2020-26182 allows unauthorized operations on 'saveset' related functions.
5
Is CVE-2020-26182 exploitable by authenticated users?
No, CVE-2020-26182 is not exploitable by authenticated users.