CVE-2024-52542: Medium severity dell emc appsync vulnerability
Published Dec 17, 2024
·Updated
Dell AppSync, version 4.6.0.x, contain a Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information tampering.
Affected Software
2 affected components
Dell AppSync>=4.6.0
Dell AppSync>=4.6.0.0<4.6.0.3
Event History
Dec 17, 2024
CVE Published
via MITRE·11:33 AM
Data Sourced
via MITRE·11:33 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-52542?
CVE-2024-52542 is classified as a low severity vulnerability.
2
How do I fix CVE-2024-52542?
To fix CVE-2024-52542, upgrade to Dell AppSync version 4.6.0.3 or later.
3
Which versions of Dell AppSync are affected by CVE-2024-52542?
CVE-2024-52542 affects Dell AppSync versions from 4.6.0.0 to 4.6.0.2.
4
Who can exploit CVE-2024-52542?
A low-privileged attacker with local access can potentially exploit CVE-2024-52542.
5
What type of vulnerability is CVE-2024-52542?
CVE-2024-52542 is a Symbolic Link (Symlink) Following vulnerability.