Required CVE Record Information
Description
Dell EMC ESRS Policy Manager versions 6.8 and prior contain a remote code execution vulnerability due to improper configurations of triggered JMX services. A remote unauthenticated attacker may potentially exploit this vulnerability to execute arbitrary code in the server's JVM.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
9.8 | CRITICAL | 3.0 | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- securitytracker.com: 1041714 vdb-entryx_transferred
- seclists.org: 20180924 DSA-2018-158: Dell EMC ESRS Policy Manager Remote Code Execution Vulnerability mailing-listx_transferred
- securityfocus.com: 105405 vdb-entryx_transferred