1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Dell EMC patches critical flaws in VMAX enterprise storage systems

Discussion in 'Network World' started by RSS, Oct 3, 2016.

  1. RSS

    RSS New Member Member

    Dell EMC has fixed six flaws in its management interfaces for VMAX enterprise storage systems, including three vulnerabilities that are rated critical and could lead to the exposure of sensitive files or a complete system compromise.

    One of the critical flaws is located in the Unisphere for VMAX enterprise storage arrays, an appliance that provides a web-based management interface to provision, manage, and monitor such systems.

    More specifically, the flaw is in the GraniteDS library that provides server-side support for the Flash-based portion of the Unisphere web application. According to researchers from vulnerability management firm Digital Defense, the issue allows unauthenticated attackers to retrieve arbitrary text files from the virtual appliance with root privileges.

    To read this article in full or to leave a comment, please click here

    Continue reading...

Share This Page