Dell EMC Networking X-Series firmware versions prior to 3.0.1.8 and Dell EMC PowerEdge VRTX Switch Module firmware versions prior to 2.0.0.82 contain a Weak Password Encryption Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable system with privileges of the compromised account.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Dell
Subscribe
|
R1-2210
Subscribe
R1-2210 Firmware
Subscribe
R1-2401
Subscribe
R1-2401 Firmware
Subscribe
X1008
Subscribe
X1008 Firmware
Subscribe
X1008p
Subscribe
X1008p Firmware
Subscribe
X1018
Subscribe
X1018 Firmware
Subscribe
X1018p
Subscribe
X1018p Firmware
Subscribe
X1026
Subscribe
X1026 Firmware
Subscribe
X1026p
Subscribe
X1026p Firmware
Subscribe
X1052
Subscribe
X1052 Firmware
Subscribe
X1052p
Subscribe
X1052p Firmware
Subscribe
X4012
Subscribe
X4012 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-8779 | Dell EMC Networking X-Series firmware versions prior to 3.0.1.8 and Dell EMC PowerEdge VRTX Switch Module firmware versions prior to 2.0.0.82 contain a Weak Password Encryption Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable system with privileges of the compromised account. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000185252 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T22:51:51.501Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-21507
No data.
Status : Modified
Published: 2021-04-30T21:15:08.597
Modified: 2024-11-21T05:48:30.070
Link: CVE-2021-21507
No data.
OpenCVE Enrichment
No data.
EUVD