Dell EMC Avamar Security Update for ADMe Web UI Vulnerability
Vulnerability Description
Dell EMC Avamar ADMe Web Interface 1.0.50 and 1.0.51 are affected by an LFI vulnerability which may allow a malicious user to download arbitrary files from the affected system by sending a specially crafted request to the Web Interface application.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-3737
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Dell EMC would like to thank Ken Pyle from DFDR Consulting for reporting this vulnerability.
More from Dell EMC
View All →Affected Vendor
Dell EMC
View all reports →