CVE-2020-5327: Critical severity Dell Security Management Server vulnerability
Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disabled, a remote unauthenticated attacker may exploit this vulnerability by sending a crafted RMI request to execute arbitrary code on the target host.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Dell Security Management Serverto a version that resolves this vulnerability.Fixed in 10.2.10 - Compensating control
Ensure the server is protected at the network layer: do not expose Dell Security Management Server to the internet without Windows Firewall enabled; specifically, keep Windows Firewall enabled rather than disabled to reduce exposure to remote unauthenticated attackers.
Event History
Frequently Asked Questions
What is CVE-2020-5327?
CVE-2020-5327 is a vulnerability found in Dell Security Management Server versions prior to 10.2.10.
What is the severity of CVE-2020-5327?
CVE-2020-5327 has a severity rating of 9.8 (Critical).
How does CVE-2020-5327 impact Dell Security Management Server?
CVE-2020-5327 allows remote unauthenticated attackers to exploit a Java RMI Deserialization vulnerability on Dell Security Management Server versions prior to 10.2.10.
How can an attacker exploit CVE-2020-5327?
An attacker can exploit CVE-2020-5327 by sending a crafted RMI request to the server when it is exposed to the internet and Windows Firewall is disabled.
How can I fix CVE-2020-5327?
To fix CVE-2020-5327, it is recommended to update Dell Security Management Server to version 10.2.10 or later.