CVE-2020-5352: OS Command Injection
Published Jul 6, 2020
·Updated
Dell EMC Data Protection Advisor 6.4, 6.5 and 18.1 contain an OS command injection vulnerability. A remote authenticated malicious user may exploit this vulnerability to execute arbitrary commands on the affected system.
Affected Software
3 affected components
Dell EMC Data Protection Advisor=6.4
Dell EMC Data Protection Advisor=6.5
Dell EMC Data Protection Advisor=18.1
Event History
Jul 6, 2020
CVE Published
via MITRE·05:45 PM
Data Sourced
via MITRE·05:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-5352?
The severity of CVE-2020-5352 is critical, with a severity value of 8.8.
2
How does CVE-2020-5352 affect Dell EMC Data Protection Advisor?
CVE-2020-5352 affects Dell EMC Data Protection Advisor versions 6.4, 6.5, and 18.1.
3
What is the vulnerability in Dell EMC Data Protection Advisor?
The vulnerability in Dell EMC Data Protection Advisor is an OS command injection vulnerability.
4
How can a malicious user exploit CVE-2020-5352?
A remote authenticated malicious user can exploit CVE-2020-5352 to execute arbitrary commands on the affected system.
5
Is there a fix available for CVE-2020-5352?
Yes, Dell has released a fix for CVE-2020-5352. Please refer to the provided reference link for more information.