CVE-2021-21569: OS Command Injection
Published Sep 28, 2021
·Updated
Dell NetWorker, versions 18.x and 19.x contain a Path traversal vulnerability. A NetWorker server user with remote access to NetWorker clients may potentially exploit this vulnerability and gain access to unauthorized information.
Affected Software
1 affected component
Dell EMC NetWorker>=18.1.0.1<19.4.0.4
Remediation
Patch Available
Event History
Sep 28, 2021
CVE Published
via MITRE·07:20 PM
Data Sourced
via MITRE·07:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-21569?
CVE-2021-21569 is classified as a moderate severity vulnerability due to the potential for unauthorized access to sensitive information.
2
How do I fix CVE-2021-21569?
To fix CVE-2021-21569, update your Dell NetWorker to a version earlier than 18.1.0.1 or version 19.4.0.4 or later.
3
What versions of Dell NetWorker are affected by CVE-2021-21569?
CVE-2021-21569 affects Dell NetWorker versions 18.x and 19.x up to 19.4.0.4.
4
Can a remote user exploit CVE-2021-21569?
Yes, a remote user with access to the NetWorker clients can potentially exploit CVE-2021-21569.
5
What type of vulnerability is CVE-2021-21569?
CVE-2021-21569 is a path traversal vulnerability that may allow unauthorized access to files.