Dell EMC Avamar Server, versions 19.3 and 19.4 contain an Improper Authorization vulnerability in the web UI. A remote low privileged attacker could potentially exploit this vulnerability, to gain unauthorized read or modification access to other users' backup data.
| Software | From | Fixed in |
|---|---|---|
| dell / emc_avamar_server | 19.3 | 19.3.x |
| dell / emc_integrated_data_protection_appliance | 2.6 | 2.6.x |
| dell / emc_avamar_server | 19.4 | 19.4.x |