Vulnerability Details CVE-2019-3762
Data Protection Central versions 1.0, 1.0.1, 18.1, 18.2, and 19.1 contains an Improper Certificate Chain of Trust Vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by obtaining a CA signed certificate from Data Protection Central to impersonate a valid system to compromise the integrity of data.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2019-3762
-
cpe:2.3:a:dell:emc_data_protection_central:1.0
-
cpe:2.3:a:dell:emc_data_protection_central:1.0.1
-
cpe:2.3:a:dell:emc_data_protection_central:18.1
-
cpe:2.3:a:dell:emc_data_protection_central:18.2
-
cpe:2.3:a:dell:emc_data_protection_central:19.1
-
cpe:2.3:a:dell:emc_integrated_data_protection_appliance:2.0
-
cpe:2.3:a:dell:emc_integrated_data_protection_appliance:2.1
-
cpe:2.3:a:dell:emc_integrated_data_protection_appliance:2.2
-
cpe:2.3:a:dell:emc_integrated_data_protection_appliance:2.3
-
cpe:2.3:a:dell:emc_integrated_data_protection_appliance:2.4