VYPR

Emc Vnx2 Firmware

by Dell

CVEs (2)

  • CVE-2019-3704HigFeb 7, 2019
    risk 0.51cvss 7.8epss 0.01

    VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability. Due to inadequate restriction configured in sudores, a local authenticated malicious user could potentially execute arbitrary OS commands as root by…

  • CVE-2017-14383MedJan 4, 2018
    risk 0.40cvss 6.1epss 0.01

    In Dell EMC VNX2 versions prior to Operating Environment for File 8.1.9.217 and VNX1 versions prior to Operating Environment for File 7.1.80.8, a web server error page in VNX Control Station is impacted by a reflected cross-site scripting vulnerability. A remote unauthenticated…