First published: Tue Dec 10 2024(Updated: )
Dell Avamar, version(s) 19.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Avamar | >=19.0 | |
All of | ||
Any of | ||
Dell EMC Avamar | =19.4 | |
Dell EMC Avamar | =19.7 | |
Dell EMC Avamar | =19.8 | |
Dell EMC Avamar | =19.9 | |
Dell EMC Avamar | =19.10 | |
Dell EMC Avamar | =19.10-sp1 | |
Any of | ||
Dell EMC Avamar | =gen4t | |
Dell EMC Avamar | =gen5a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47484 is considered a high severity vulnerability due to its potential for remote command execution.
To fix CVE-2024-47484, you should apply the latest security updates provided by Dell for Avamar version 19.x.
CVE-2024-47484 affects Dell Avamar versions 19.0 through 19.10, including specific service packs.
Yes, CVE-2024-47484 can be exploited by unauthenticated remote attackers.
CVE-2024-47484 is classified as an SQL Injection vulnerability.