First published: Mon Aug 09 2021(Updated: )
Dell OpenManage Enterprise version 3.5 and OpenManage Enterprise-Modular version 1.30.00 contain an information disclosure vulnerability. An authenticated low privileged attacker may potentially exploit this vulnerability leading to disclosure of the OIDC server credentials.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell OpenManage | =3.5 | |
Dell OpenManage | =1.30.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-21584 is classified as an information disclosure vulnerability.
To fix CVE-2021-21584, update to the latest version of Dell OpenManage Enterprise or OpenManage Enterprise-Modular that addresses this vulnerability.
CVE-2021-21584 affects users of Dell OpenManage Enterprise version 3.5 and OpenManage Enterprise-Modular version 1.30.00.
An authenticated low privileged attacker may exploit CVE-2021-21584 to disclose OIDC server credentials.
While it is not confirmed if CVE-2021-21584 is actively exploited, it poses a risk due to potential unauthorized information disclosure.