ZeroHour

CVE-2018-1235

PoC
CVSS 3.0
9.8 critical
EPSS
43%p99
Published
()
Modified
Description

Dell EMC RecoverPoint versions prior to 5.1.2 and RecoverPoint for VMs versions prior to 5.1.1.3, contain a command injection vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to execute arbitrary commands on the affected system with root privilege.

Vendors
emc
Products
recoverpoint, recoverpoint for virtual machines
Weakness
CWE-78
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.