CVE-2019-3762 vulnerability in Dell Products
Published on March 18, 2020
Data Protection Central versions 1.0, 1.0.1, 18.1, 18.2, and 19.1 contains an Improper Certificate Chain of Trust Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by obtaining a CA signed certificate from Data Protection Central to impersonate a valid system to compromise the integrity of data.
Weakness Type
Improper Following of a Certificate's Chain of Trust
The software does not follow, or incorrectly follows, the chain of trust for a certificate back to a trusted root certificate, resulting in incorrect trust of any resource that is associated with that certificate.
Products Associated with CVE-2019-3762
stack.watch emails you whenever new vulnerabilities are published in Dell Emc Data Protection Central or Dell Emc Integrated Data Protection Appliance. Just hit a watch button to start following.
Affected Versions
Dell Data Protection Central Version 1.0, 1.0.1, 18.1, 18.2, 19.1 is affected by CVE-2019-3762Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.