VYPR

Streaming Data Platform

by Dell

CVEs (6)

  • CVE-2021-36328HigNov 30, 2021
    risk 0.57cvss 8.8epss 0.01

    Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability. A remote malicious user may potentially exploit this vulnerability to execute SQL commands to perform unauthorized actions and retrieve sensitive information from the database.

  • CVE-2021-36330HigNov 30, 2021
    risk 0.53cvss 8.1epss 0.01

    Dell EMC Streaming Data Platform versions before 1.3 contain an Insufficient Session Expiration Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to reuse old session artifacts to impersonate a legitimate user.

  • CVE-2021-36329MedNov 30, 2021
    risk 0.42cvss 6.5epss 0.01

    Dell EMC Streaming Data Platform versions before 1.3 contain an Indirect Object Reference Vulnerability. A remote malicious user may potentially exploit this vulnerability to gain sensitive information.

  • CVE-2021-36326MedNov 30, 2021
    risk 0.42cvss 6.5epss 0.01

    Dell EMC Streaming Data Platform, versions prior to 1.3 contain an SSL Strip Vulnerability in the User Interface (UI). A remote unauthenticated attacker could potentially exploit this vulnerability, leading to a downgrade in the communications between the client and server into…

  • CVE-2023-28069MedApr 5, 2023
    risk 0.40cvss 6.1epss 0.00

    Dell Streaming Data Platform prior to 1.4 contains Open Redirect vulnerability. A remote unauthenticated attacker can phish the legitimate user to redirect to malicious website leading to information disclosure and launch of phishing attacks.

  • CVE-2021-36327MedNov 30, 2021
    risk 0.35cvss 5.3epss 0.01

    Dell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability to perform port scanning of internal networks and make HTTP requests to an arbitrary domain of…