CVE Published: 08/05/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: dell |
Vendor: Dell |
Product: Data Manager Appliance Software (DMAS) Status : PUBLISHED
CVE-2024-24908 Description
Dell PowerProtect DM5500 version 5.15.0.0 and prior contain an Arbitrary File Delete via Path Traversal vulnerability. A remote attacker with high privileges could potentially exploit this vulnerability to deletion of arbitrary files stored on the server filesystem.
Metrics
CVSS Version: 3.1 |
Base Score: 6.5 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H