Medium severity6.4NVD Advisory· Published May 15, 2019· Updated Jun 17, 2026
CVE-2019-3727
CVE-2019-3727
Description
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious boxmgmt user may potentially be able to execute arbitrary commands as root.
Affected products
6- cpe:2.3:a:dell:recoverpoint_for_virtual_machines:*:*:*:*:*:*:*:*Range: <5.2.0.2
- Range: <5.1.3
- Range: <5.1.3
<5.2.0.2+ 1 more
- (no CPE)range: <5.2.0.2
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.