Vulnerability Details CVE-2020-5327
Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disabled, a remote unauthenticated attacker may exploit this vulnerability by sending a crafted RMI request to execute arbitrary code on the target host.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.05
EPSS Ranking 89.4%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 9.3
Products affected by CVE-2020-5327
-
cpe:2.3:a:dell:security_management_server:10.2.0