First published: Mon Jul 12 2021(Updated: )
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Unity Operating Environment | <5.1.0.0.5.394 | |
Dell Emc Unity Xt Operating Environment | <5.1.0.0.5.394 | |
Dell Emc Unityvsa Operating Environment | <5.1.0.0.5.394 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-21590.
The severity of CVE-2021-21590 is medium.
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 are affected.
A local malicious user with high privileges may use the exposed password to gain access with the privileges of the compromised user.
Update Dell EMC Unity, Unity XT, and UnityVSA to version 5.1.0.0.5.394 or later to fix the vulnerability.