VYPR
Medium severity6.5NVD Advisory· Published Mar 16, 2018· Updated Jun 17, 2026

CVE-2017-14384

CVE-2017-14384

Description

In Dell Storage Manager versions earlier than 16.3.20, the EMConfigMigration service is affected by a directory traversal vulnerability. A remote malicious user could potentially exploit this vulnerability to read unauthorized files by supplying specially crafted strings in input parameters of the application. A malicious user cannot delete or modify any files via this vulnerability.

Affected products

3
  • cpe:2.3:a:dell:storage_manager:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:dell:storage_manager:*:*:*:*:*:*:*:*range: <16.3.20
    • (no CPE)range: <16.3.20
    • (no CPE)range: earlier than 16.3.20

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.