Dell OpenManage Enterprise, v4.0 and prior, contain(s) a path traversal vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, to gain unauthorized access to the files stored on the server filesystem, with the privileges of the running web application.
References
Configurations
History
04 Feb 2025, 17:33
Type | Values Removed | Values Added |
---|---|---|
First Time |
Dell
Dell openmanage Enterprise |
|
References | () https://www.dell.com/support/kbdoc/en-us/000223623/dsa-2024-100-security-update-for-dell-openmanage-enterprise-path-traversal-sensitive-data-disclosure-vulnerability - Vendor Advisory | |
CPE | cpe:2.3:a:dell:openmanage_enterprise:*:*:*:*:*:*:*:* | |
CWE | CWE-22 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
29 Mar 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-29 17:15
Updated : 2025-02-04 17:33
NVD link : CVE-2024-25944
Mitre link : CVE-2024-25944
JSON object : View
Products Affected
dell
- openmanage_enterprise
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')