CVE-2021-21531 — Client-Side Enforcement of Server-Side Security in Dell Unisphere FOR Powermax
Severity
7.8HIGHNVD
CNA8.1
EPSS
0.1%
top 65.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 30
Latest updateFeb 13
Description
Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability. A local authenticated malicious user with monitor role may exploit this vulnerability to perform unauthorized actions.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9