Dell Emc Openmanage Server Administrator vulnerabilities
2 known vulnerabilities affecting dell_emc/openmanage_server_administrator.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1
Vulnerabilities
Page 1 of 1
CVE-2019-3723P3CRITICALCVSS 9.1≥ 9.1.0.3, < 9.1.0.3≥ 9.3.0.4, < 9.3.0.42019-06-06
CVE-2019-3723 [CRITICAL] CWE-20 CVE-2019-3723: Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 conta
Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain a web parameter tampering vulnerability. A remote unauthenticated attacker could potentially manipulate parameters of web requests to OMSA to create arbitrary files with empty content or delete the contents of any existing file, due to improper inpu
nvd
CVE-2019-3722P3HIGHCVSS 7.5≥ 9.1.0.3, < 9.1.0.3≥ 9.3.0.4, < 9.3.0.42019-06-06
CVE-2019-3722 [HIGH] CWE-611 CVE-2019-3722: Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 conta
Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain an XML external entity (XXE) injection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to read arbitrary server system files by supplying specially crafted document type definitions (DTDs) in an XML request
nvd