peter bassill · operator
$ cve CVE-2020-5330 JSON

CVE-2020-5330 EXPLOIT

8.1
HIGH · CVSS 3.1 · EPSS 13.3% (pctl 96)

Patch early

A public exploit exists.

Description

Dell EMC Networking X-Series firmware versions 3.0.1.2 and older, Dell EMC Networking PC5500 firmware versions 4.1.0.22 and older and Dell EMC PowerEdge VRTX Switch Modules firmware versions 2.0.0.77 and older contain an information disclosure vulnerability. A remote unauthenticated attacker could exploit this vulnerability to retrieve sensitive data by sending a specially crafted request to the affected endpoints.

Scoring

CVSS8.1 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS13.26% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-200
On CISA KEVno
Public exploityes
Published2020-04-10
Last modified2026-06-17

Affected (10)

VendorProduct
dellpc5500
dellpc5500 firmware
dellr1-2210
dellr1-2210 firmware
dellr1-2401
dellr1-2401 firmware
dellx1000
dellx1000 firmware
dellx4012
dellx4012 firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD