11/17/2020 - Vulnerability discovered
11/30/2020 - Vulnerability reported to Dell. 90-day date is March 01, 2021.
12/01/2020 - Dell is tracking this as PSRC-14647. They will investigate the issue.
12/03/2020 - Tenable acknowledges. Thanks Dell for response. We will stay on the lookout for future comms.
12/03/2020 - Dell asks for more information and PoC video.
12/04/2020 - Tenable provides more information and PoC video.
12/10/2020 - Dell asks to meet with the discovering researcher.
12/10/2020 - Tenable prefers to keep things in writing, per process. Asks for specific questions / feedback.
12/15/2020 - Dell is unable to reproduce the issue in their lab. Asks if we can meet virtually.
12/16/2020 - Dell is able to reproduce the issue and is working on an impact assessment. They will get back to us soon.
12/16/2020 - Tenable acknowledges.
12/16/2020 - Dell asks for us to be flexible with them on a response?
12/16/2020 - Tenable asks for clarification.
12/16/2020 - Dell asks if they can get back to us next week with an impact statement.
12/16/2020 - Tenable says that is fine.
12/17/2020 - Dell has validated the findings. They will communicate remediation / mitigation info ASAP. Asks if we would like to be acknowledged.
12/17/2020 - Tenable thanks Dell. Acknowledge Tenable, Inc. Asks to be notified on anticipated patch/advisory release dates.
12/18/2020 - Dell is targeting March for remediation. Asks how we would like to be acknowledged.
12/18/2020 - Tenable thanks Dell. Please acknowledge "Tenable, Inc."
01/04/2021 - Tenable asks for an update.
01/07/2021 - Dell is on track to have a fix by March. Asks us if we want any specific info.
01/07/2021 - Tenable thanks Dell. Mentions fix version and CVE ID.
02/12/2021 - Tenable asks for an update.
02/15/2021 - Dell would like to release an advisory on March 15. They can provide a CVE ID closer to release date. Asks for an advisory preview.
02/16/2021 - Tenable states 90-day policy. Provides draft of advisory.
02/18/2021 - Dell plans to meet the 90-day date. They provide an acknowledgement and CVE ID.
02/25/2021 - Tenable thanks Dell.