← Retour aux CVEs
CVE-2023-44291
HIGH7.2
Description
Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance. A remote attacker with high privileges could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the underlying OS, with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.
Details CVE
Score CVSS v3.17.2
SeveriteHIGH
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisHIGH
Interaction utilisateurNONE
Publie12/4/2023
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0
Produits affectes
dell:powerprotect_data_manager_dm5500dell:powerprotect_data_manager_dm5500_firmware
Faiblesses (CWE)
CWE-78CWE-78
References
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.