DELL EMC Updates
2635Warning Date
Severity Level
Warning Number
Target Sector
21 December, 2021
● Critical
2021-4114
All
Description:
Dell EMC has released security updates to address multiple vulnerabilities in the following products:
- Dell EMC Unisphere for PowerMax
- Dell EMC Unisphere for PowerMax Virtual Appliance
- Dell EMC Solutions Enabler Virtual Appliance
- Dell EMC Unisphere 360
- Dell EMC VASA, and Dell EMC\
- Dell EMC Elastic Cloud Storage
- Dell EMC DPA
- Dell EMC OpenManage Enterprise Services
- Dell EMC Cloud Disaster Recovery
Threats:
A remote attacker could exploit these vulnerabilities by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/kbdoc/en-us/000194640/dsa-2021-226-dell-emc-unisphere-for-powermax-dell-emc-unisphere-for-powermax-virtual-appliance-dell-emc-solutions-enabler-virtual-appliance-dell-emc-unisphere-360-dell-emc-vasa-and-dell-emc-powermax-embedded-management-security-update-for-multiple-th
- https://www.dell.com/support/kbdoc/en-us/000194656/dsa-2021-263-dell-emc-elastic-cloud-storage-security-update-for-third-party-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000194651/dsa-2021-309-dell-emc-dpa-security-update-for-apache-log4j-remote-code-execution-vulnerability-cve-2021-44228
- https://www.dell.com/support/kbdoc/en-us/000194652/dsa-2021-276-dell-emc-openmanage-enterprise-services-security-update-for-apache-log4j-remote-code-execution-vulnerabilities-cve-2021-44228-cve-2021-45046
- https://www.dell.com/support/kbdoc/en-us/000194663/dsa-2021-289-dell-emc-cloud-disaster-recovery-security-update-for-apache-log4j-remote-code-execution-vulnerability-cve-2021-44228-and-cve-2021-45046