CVE-2020-5341
Summary
| CVE | CVE-2020-5341 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-07-28 00:15:00 UTC |
| Updated | 2021-08-05 19:13:00 UTC |
| Description | Deserialization of Untrusted Data Vulnerability Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2, 19.1 and 19.2 and Dell EMC Integrated Data Protection Appliance versions 2.0, 2.1, 2.2, 2.3, 2.4 and 2.4.1 contain a Deserialization of Untrusted Data Vulnerability. A remote unauthenticated attacker could exploit this vulnerability to send a serialized payload that would execute code on the system. |
Risk And Classification
Problem Types: CWE-502
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Dell | Emc Avamar Server | 18.1 | All | All | All |
| Application | Dell | Emc Avamar Server | 18.2 | All | All | All |
| Application | Dell | Emc Avamar Server | 19.1 | All | All | All |
| Application | Dell | Emc Avamar Server | 19.2 | All | All | All |
| Application | Dell | Emc Avamar Server | 7.4.1 | All | All | All |
| Application | Dell | Emc Avamar Server | 7.5.0 | All | All | All |
| Application | Dell | Emc Avamar Server | 7.5.1 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.0 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.1 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.2 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.3 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.4 | All | All | All |
| Operating System | Dell | Emc Integrated Data Protection Appliance Firmware | 2.4.1 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Access Denied | CONFIRM | www.dell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.