QID 378610

Date Published: 2023-07-18

QID 378610: Dell NetWorker Security Update for an Apache Tomcat Vulnerability (DSA-2022-341)

Dell NetWorker is a suite of enterprise level data protection software that unifies and automates backup to tape, disk-based, and flash-based storage media across physical and virtual environments for granular and disaster recovery.

Affected NetWorker Versions:
Networker version 19.6.x
Networker 19.7.x prior to version 19.7.0.2

QID Detection Logic (Authenticated):
This QID checks Windows registry "HKLM\SOFTWARE\Legato\NetWorker" and "HKLM\SOFTWARE\Wow6432Node\Legato\NetWorker" to see if vulnerable version of Dell NetWorker is installed.

Successful exploitation may compromise the system

  • CVSS V3 rated as High - 6.1 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Customers are advised to refer to Dell Security Advisory DSA-2022-341 for more information about this vulnerability.

    CVEs related to QID 378610

    Software Advisories
    Advisory ID Software Component Link
    DSA-2022-341 URL Logo www.dell.com/support/kbdoc/en-in/000206061/dsa-2022-341-dell-networker-security-update-for-a-vulnerability