CNNVD-202508-246 Information

CNNVD ID

CNNVD-202508-246

CVE-2025-21120

  • CNNVD Published: 2025-08-04

Description (Chinese)

Dell Avamar是美国戴尔(Dell)公司的一种专门构建的备份应用装置。用于提供大小方便、统包式、经济实惠、重复数据删除的备份解决方案。 Dell Avamar 19.12之前版本存在安全漏洞,该漏洞源于服务器端HTTP权限方法信任不当,可能导致信息泄露。

Description (English)

Dell Avamar is a specially constructed back-up application for Dell in the United States. Back-up solutions to provide easy-to-size, turnkey, cost-effective, duplicate data deletions. There was a security loophole in Dell Avamar 19.12, which stemmed from inappropriate trust in the server-side HTTP privileges method, which could lead to the disclosure of information.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

戴尔

Published

2025-08-04

Last Modified

2026-02-24

References

https://www.dell.com/support/kbdoc/en-us/000347698/dsa-2025-271-security-update-for-dell-avamar-and-dell-avamar-virtual-edition-multiple-vulnerabilities https://vigilance.fr/vulnerability/Dell-Avamar-information-disclosure-via-interface-Web-47760

Patch

https://www.dell.com/support/kbdoc/en-us/000347698/dsa-2025-271-security-update-for-dell-avamar-and-dell-avamar-virtual-edition-multiple-vulnerabilities

Share on: