Dell AppSync
cpe:2.3:a:dell:emc_appsync:*:*:*:*:*:*:*, +1 more
- < 4.6.0.4
A symlink following vulnerability has been identified in Dell AppSync version 4.6.0. This vulnerability allows a low privileged attacker with local access to manipulate information by exploiting the way the application handles UNIX symbolic links.
Exploitation of this vulnerability could lead to unauthorized information modification.
Users can upgrade to Dell AppSync version 4.6.1.0 or later to address this vulnerability. Drivers for the updated version are available on the Dell Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.