Vulnerability Description
Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disabled, a remote unauthenticated attacker may exploit this vulnerability by sending a crafted RMI request to execute arbitrary code on the target host.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Security Management Server | < 10.2.10 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/article/SLN320536PatchVendor Advisory
- https://www.dell.com/support/article/SLN320536PatchVendor Advisory
FAQ
What is CVE-2020-5327?
CVE-2020-5327 is a vulnerability with a CVSS score of 8.1 (HIGH). Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disable...
How severe is CVE-2020-5327?
CVE-2020-5327 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-5327?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Security Management Server.