CVE-2020-5377
Dell EMC OpenManage Server Administrator (OMSA) versions 9.4 and prior contain multiple path traversal vulnerabilities. An unauthenticated remote attacker could potentially exploit these vulnerabilities by sending a crafted Web API request containing directory traversal character sequences to gain file system access on the compromised management station.
- Affected products
- Dell Openmanage Server Administrator
- Dell Emc Openmanage Server Administrator
- ≤ 9.4
- Fix
- Available
- CVSS 3.1
- 9.1 CRITICAL
- EPSS
- 48.3% (99th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2020-07-28
CVE-2020-5377 at NVD
6 known exploits for CVE-2020-5377
Proof-of-concept code and exploit modules indexed by Sploitus