CVE-2020-29494

Description

Dell EMC Avamar Server, versions 19.1, 19.2, 19.3, contain a Path Traversal Vulnerability in PDM. A remote user could potentially exploit this vulnerability, to gain unauthorized write access to the arbitrary files stored on the server filesystem, causing deletion of arbitrary files.

Risk Information

Base Score
8.7
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
EPSS Score
Exploitation Probability
0.939

Associated Vulnerability

VulnerabilityOS Platform
Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability (CVE-2020-29494)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234