Dell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1,...
Vulnerability Description
Dell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1, 2.0, 2.1, and 3.0 contain a certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-3751
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Dell EMC would like to thank Thorsten Tüllmann from Karlsruhe Institute of Technology (KIT) for reporting this vulnerability.
More from DELL EMC
View All →Affected Vendor
DELL EMC
View all reports →