7.2
CVSSv2

CVE-2019-3727

Published: 15/05/2019 Updated: 22/05/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Dell EMC RecoverPoint versions before 5.1.3 and RecoverPoint for VMs versions before 5.2.0.2 contain an OS command injection vulnerability in the installation feature of Boxmgmt CLI. A malicious boxmgmt user may potentially be able to execute arbitrary commands as root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dell recoverpoint for virtual machines

dell emc recoverpoint