Dell EMC NetWorker software provides fast, efficient backup and recovery for enterprise applications and databases.
Affected Version:
Dell EMC NetWorker Virtual Edition 19.4.x
QID Detection Logic (Unauthenticated):
This QID tries to find vulnerable Dell EMC NetWorker Virtual Edition versions by transmitting a HTTP POST request to avi/avigui/avigwt
Apache Log4j remote code execution vulnerability that may be exploited by malicious users to compromise the affected system Dell EMC NetWorker Virtual Edition.
CVSS V3 rated as Critical - 10 severity.
CVSS V2 rated as Critical - 9.3 severity.
Solution
Further information can be obtained from DSA-2021-280
Affected Version:
Dell EMC NetWorker Virtual Edition 19.4.x
QID Detection Logic (Unauthenticated):
This QID tries to find vulnerable Dell EMC NetWorker Virtual Edition versions by transmitting a HTTP POST request to avi/avigui/avigwt
[solution] => Further information can be obtained from DSA-2021-280
[consequence] => Apache Log4j remote code execution vulnerability that may be exploited by malicious users to compromise the affected system Dell EMC NetWorker Virtual Edition.