CVE-2017-14374
Published: Dec 6, 2017
Modified: Aug 5, 2024
Description
The SMI-S service in Dell Storage Manager versions earlier than 16.3.20 (aka 2016 R3.20) is protected using a hard-coded password. A remote user with the knowledge of the password might potentially disable the SMI-S service via HTTP requests, affecting storage management and monitoring functionality via the SMI-S interface. This issue, aka DSM-30415, only affects a Windows installation of the Data Collector (not applicable to the virtual appliance).
| Vendor | Product | Versions |
|---|---|---|
n/a | Dell Storage Manager 2016 Dell Storage Manager versions earlier than 16.3.20 | affected Dell Storage Manager 2016 Dell Storage Manager versions earlier than 16.3.20 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now