Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

Article Number: 000194083


DSA-2021-260: Dell PowerPath Management Appliance Security Update for a Hard Coded Encryption Key Vulnerability

Summary: Dell PowerPath Management Appliance remediation is available for a hard coded encryption key vulnerability that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Details

Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2021-43587 Dell PowerPath Management Appliance, versions 3.2, 3.1, 3.0 P01, 3.0, and 2.6, use hard-coded cryptographic key. A local high-privileged malicious user may potentially exploit this vulnerability to gain access to secrets and elevate to gain higher privileges. 8.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Proprietary Code CVE Description CVSS Base Score CVSS Vector String
CVE-2021-43587 Dell PowerPath Management Appliance, versions 3.2, 3.1, 3.0 P01, 3.0, and 2.6, use hard-coded cryptographic key. A local high-privileged malicious user may potentially exploit this vulnerability to gain access to secrets and elevate to gain higher privileges. 8.2 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Affected Versions Updated Versions Link to Update
Dell PowerPath Management Appliance 2.6 3.2 P01 https://www.dell.com/support/home/en-in/product-support/product/powerpath-management-appliance/drivers
3.0
3.0 P01
3.1
3.2
Product Affected Versions Updated Versions Link to Update
Dell PowerPath Management Appliance 2.6 3.2 P01 https://www.dell.com/support/home/en-in/product-support/product/powerpath-management-appliance/drivers
3.0
3.0 P01
3.1
3.2

Revision History

RevisionDateDescription
1.02021-12-09Initial Release

Related Information


Article Properties


Affected Product

Product Security Information

Last Published Date

09 Dec 2021

Article Type

Dell Security Advisory