Dell PowerProtect Cyber Recovery, versions prior to 19.11, contain a privilege escalation vulnerability on virtual appliance deployments. A lower-privileged authenticated user can chain docker commands to escalate privileges to root leading to complete system takeover.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Powerprotect_cyber_recovery | Dell | * | 19.11 (excluding) |