CVE-2020-29500: High severity dell emc powerstore vulnerability
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore T environments. A locally authenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-29500?
CVE-2020-29500 is a vulnerability that affects Dell EMC PowerStore versions prior to 1.0.3.0.5.007.
What is the severity of CVE-2020-29500?
CVE-2020-29500 has a severity rating of 6.7, which is considered high.
How does CVE-2020-29500 affect Dell EMC PowerStore?
CVE-2020-29500 allows a locally authenticated attacker to potentially exploit a plain-text password storage vulnerability in PowerStore T environments, leading to the disclosure of certain user credentials.
Which versions of Dell EMC PowerStore are affected by CVE-2020-29500?
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 are affected by CVE-2020-29500.
Is there a fix available for CVE-2020-29500?
Yes, Dell has released a fix for CVE-2020-29500. It is recommended to update to version 1.0.3.0.5.007 or later.