CVE-2020-5330
Summary
| CVE | CVE-2020-5330 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-10 19:15:00 UTC |
| Updated | 2024-02-01 02:28:00 UTC |
| Description | Dell EMC Networking X-Series firmware versions 3.0.1.2 and older, Dell EMC Networking PC5500 firmware versions 4.1.0.22 and older and Dell EMC PowerEdge VRTX Switch Modules firmware versions 2.0.0.77 and older contain an information disclosure vulnerability. A remote unauthenticated attacker could exploit this vulnerability to retrieve sensitive data by sending a specially crafted request to the affected endpoints. |
Risk And Classification
Problem Types: CWE-200
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dell | Pc5500 | - | All | All | All |
| Hardware | Dell | Pc5500 | - | All | All | All |
| Operating System | Dell | Pc5500 Firmware | All | All | All | All |
| Hardware | Dell | R1-2210 | - | All | All | All |
| Hardware | Dell | R1-2210 | - | All | All | All |
| Operating System | Dell | R1-2210 Firmware | All | All | All | All |
| Hardware | Dell | R1-2401 | - | All | All | All |
| Hardware | Dell | R1-2401 | - | All | All | All |
| Operating System | Dell | R1-2401 Firmware | All | All | All | All |
| Hardware | Dell | X1000 | - | All | All | All |
| Hardware | Dell | X1000 | - | All | All | All |
| Operating System | Dell | X1000 Firmware | All | All | All | All |
| Hardware | Dell | X4012 | - | All | All | All |
| Hardware | Dell | X4012 | - | All | All | All |
| Operating System | Dell | X4012 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| DSA-2020-042: Dell Networking Security Update for an Information Disclosure Vulnerability | Dell US | MISC | www.dell.com | Vendor Advisory |
| Cisco / Dell / Netgear Information Disclosure / Hash Decrypter ≈ Packet Storm | MISC | packetstormsecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.