First published: Tue Nov 23 2021(Updated: )
Dell EMC CloudLink 7.1 and all prior versions contain a CSV formula Injection Vulnerability. A remote high privileged attacker, may potentially exploit this vulnerability, leading to arbitrary code execution on end user machine
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Cloud Link | <7.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36334 has a high severity rating due to its potential for arbitrary code execution.
CVE-2021-36334 affects Dell EMC CloudLink 7.1 and all prior versions, allowing high privileged remote attackers to exploit the vulnerability.
Exploiting CVE-2021-36334 could lead to arbitrary code execution on the end user's machine.
To fix CVE-2021-36334, update Dell EMC CloudLink to version 7.1.1 or later.
Currently, there are no known workarounds for CVE-2021-36334; applying the patch is recommended.