CVE-2021-21564: Infoleak
Published Aug 9, 2021
·Updated
Dell OpenManage Enterprise versions prior to 3.6.1 contain an improper authentication vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to hijack an elevated session or perform unauthorized actions by sending malformed data.
Affected Software
1 affected component
Dell OpenManage Enterprise<3.6.1
Remediation
Patch Available
Event History
Aug 9, 2021
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-21564?
The severity of CVE-2021-21564 is rated as critical with a CVSS score of 9.8.
2
How can I fix CVE-2021-21564?
To fix CVE-2021-21564, users should update Dell OpenManage Enterprise to version 3.6.1 or later.
3
What is the impact of CVE-2021-21564?
CVE-2021-21564 allows a remote unauthenticated attacker to hijack an elevated session or perform unauthorized actions.
4
Is CVE-2021-21564 related to authentication vulnerability?
Yes, CVE-2021-21564 is related to an improper authentication vulnerability in Dell OpenManage Enterprise.
5
Where can I find more information about CVE-2021-21564?
More information about CVE-2021-21564 can be found on the Dell support page.