High severity7.5NVD Advisory· Published Jun 19, 2019· Updated Jun 17, 2026
CVE-2019-3737
CVE-2019-3737
Description
Dell EMC Avamar ADMe Web Interface 1.0.50 and 1.0.51 are affected by an LFI vulnerability which may allow a malicious user to download arbitrary files from the affected system by sending a specially crafted request to the Web Interface application.
Affected products
4cpe:2.3:a:dell:avamar_data_migration_enabler_web_interface:1.0.50:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:dell:avamar_data_migration_enabler_web_interface:1.0.50:*:*:*:*:*:*:*
- cpe:2.3:a:dell:avamar_data_migration_enabler_web_interface:1.0.51:*:*:*:*:*:*:*
- Range: 1.0.50, 1.0.51
- Range: ADMe Web UI 1.0.50
Patches
Vulnerability mechanics
References
1- seclists.org/fulldisclosure/2019/Jun/25nvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.