CVE-2021-21570: OS Command Injection
Dell NetWorker, versions 18.x and 19.x contain an Information disclosure vulnerability. A NetWorker server user with remote access to NetWorker clients may potentially exploit this vulnerability and gain access to unauthorized information.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21570?
CVE-2021-21570 is classified as an Information Disclosure vulnerability.
How do I fix CVE-2021-21570?
To fix CVE-2021-21570, upgrade Dell NetWorker to a version beyond 19.4.0.4 or apply the recommended patches.
What versions of Dell NetWorker are affected by CVE-2021-21570?
Dell NetWorker versions 18.x and 19.x, specifically between 18.1.0.1 and 19.4.0.4, are affected by CVE-2021-21570.
Can remote users exploit CVE-2021-21570?
Yes, a NetWorker server user with remote access can potentially exploit CVE-2021-21570 to access unauthorized information.
What type of information can be disclosed due to CVE-2021-21570?
CVE-2021-21570 may allow unauthorized access to sensitive information stored on NetWorker clients.