CVE-2021-21589

3 documents3 sources
Severity
6.7MEDIUM
EPSS
0.0%
top 87.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 12
Latest updateMay 24

Description

Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 do not exit on failed Initialization. A local authenticated Service user could potentially exploit this vulnerability to escalate privileges.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:HExploitability: 0.5 | Impact: 5.2

Affected Packages4 packages

CVEListV5dell/unityunspecified5.1.0.0.5.394

🔴Vulnerability Details

2
GHSA
GHSA-39g5-9mqc-jfj6: Dell EMC Unity, Unity XT, and UnityVSA versions prior to 52022-05-24
CVEList
CVE-2021-21589: Dell EMC Unity, Unity XT, and UnityVSA versions prior to 52021-07-12
CVE-2021-21589 (MEDIUM CVSS 6.7) | Dell EMC Unity | cvebase.io