Dell EMC Updates
2559Warning Date
Severity Level
Warning Number
Target Sector
18 October, 2020
● Critical
2020-1934
All
Description:
DELL EMC has released security updates to address several vulnerabilities in the following products:
- Dell EMC Enterprise Hybrid Cloud
- Dell EMC Secure Remote Services (SRS)
- Dell EMC Integrated Data Protection Appliance (IDPA)
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code remotely
- Obtain sensitive information remotely
- Code Injection
- Cross-site scripting (XSS)
Best practice and Recommendations:
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/security/en-us/details/546620/DSA-2020-232-Dell-EMC-Secure-Remote-Services-Virtual-Edition-Security-Update-for-Multiple-Third-P
- https://www.dell.com/support/security/en-us/details/546619/DSA-2020-188-Dell-EMC-Enterprise-Hybrid-Cloud-Security-Update-for-Multiple-Third-Party-Component
- https://www.dell.com/support/security/en-us/details/546624/DSA-2020-237-Dell-EMC-Integrated-Data-Protection-Appliance-Security-Update-for-Multiple-Hardware