CVE-2020-5367: High severity dell emc unisphere vulnerability
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-5367?
The severity of CVE-2020-5367 is high with a CVSS score of 8.1.
Which software versions are affected by CVE-2020-5367?
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 are affected by CVE-2020-5367.
What is the vulnerability in CVE-2020-5367?
CVE-2020-5367 is an improper certificate validation vulnerability.
How can an attacker exploit CVE-2020-5367?
An unauthenticated remote attacker may potentially exploit CVE-2020-5367.
Where can I find more information about CVE-2020-5367?
You can find more information about CVE-2020-5367 at the following reference link: https://www.dell.com/support/kbdoc/en-uk/000153935/dsa-2020-065-dell-emc-unisphere-for-powermax-dell-emc-unisphere-for-powermax-virtual-appliance-and-dell-emc-powermax-embedded-management-update-for-multiple-vulnerabilities