CVE-2024-52534: Medium severity dell emc elastic cloud storage vulnerability
Published Dec 25, 2024
·Updated
Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Session theft.
Affected Software
2 affected components
Dell ECS<3.8.1.3
Dell Elastic Cloud Storage<3.8.1.3
Event History
Dec 25, 2024
CVE Published
via MITRE·04:04 PM
Data Sourced
via MITRE·04:04 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-52534?
CVE-2024-52534 is classified as a low severity vulnerability.
2
How do I fix CVE-2024-52534?
To fix CVE-2024-52534, upgrade to Dell ECS version 3.8.1.3 or later.
3
What type of attack is possible with CVE-2024-52534?
CVE-2024-52534 allows for an authentication bypass, potentially leading to session theft.
4
Who is affected by CVE-2024-52534?
CVE-2024-52534 affects users of Dell ECS versions prior to 3.8.1.3.
5
Can CVE-2024-52534 be exploited remotely?
Yes, CVE-2024-52534 can be exploited by a low privileged attacker with remote access.