Required CVE Record Information
Description
Dell EMC Avamar Client Manager in Dell EMC Avamar Server versions 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.4.0, 7.4.1, 7.5.0, 7.5.1, 18.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.1 and 2.2 contain an open redirection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to redirect application users to arbitrary web URLs by tricking the victim users to click on maliciously crafted links. The vulnerability could be used to conduct phishing attacks that cause users to unknowingly visit malicious sites.
Product Status
Learn moreVersions 9 Total
Default Status: unknown
affected
Versions 3 Total
Default Status: unknown
affected
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- seclists.org: 20181120 DSA-2018-145: Dell EMC Avamar Multiple Vulnerabilities mailing-listx_transferred
- https://www.vmware.com/security/advisories/VMSA-2018-0029.html x_transferred
- securityfocus.com: 105969 vdb-entryx_transferred
- securitytracker.com: 1042153 vdb-entryx_transferred