CVE-2021-21507
Summary
| CVE | CVE-2021-21507 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-04-30 21:15:00 UTC |
| Updated | 2021-05-10 19:54:00 UTC |
| Description | Dell EMC Networking X-Series firmware versions prior to 3.0.1.8 and Dell EMC PowerEdge VRTX Switch Module firmware versions prior to 2.0.0.82 contain a Weak Password Encryption Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable system with privileges of the compromised account. |
Risk And Classification
Problem Types: CWE-326
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dell | R1-2210 | - | All | All | All |
| Operating System | Dell | R1-2210 Firmware | All | All | All | All |
| Hardware | Dell | R1-2401 | - | All | All | All |
| Operating System | Dell | R1-2401 Firmware | All | All | All | All |
| Hardware | Dell | X1008 | - | All | All | All |
| Hardware | Dell | X1008p | - | All | All | All |
| Operating System | Dell | X1008p Firmware | All | All | All | All |
| Operating System | Dell | X1008 Firmware | All | All | All | All |
| Hardware | Dell | X1018 | - | All | All | All |
| Hardware | Dell | X1018p | - | All | All | All |
| Operating System | Dell | X1018p Firmware | All | All | All | All |
| Operating System | Dell | X1018 Firmware | All | All | All | All |
| Hardware | Dell | X1026 | - | All | All | All |
| Hardware | Dell | X1026p | - | All | All | All |
| Operating System | Dell | X1026p Firmware | All | All | All | All |
| Operating System | Dell | X1026 Firmware | All | All | All | All |
| Hardware | Dell | X1052 | - | All | All | All |
| Hardware | Dell | X1052p | - | All | All | All |
| Operating System | Dell | X1052p Firmware | All | All | All | All |
| Operating System | Dell | X1052 Firmware | All | All | All | All |
| Hardware | Dell | X4012 | - | All | All | All |
| Operating System | Dell | X4012 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Access Denied | CONFIRM | www.dell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.