CVE-2023-39245
CVE-2023-39245
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 9.8EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
15 Feb 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote unauthenticated attacker could potentially exploit this vulnerability by eavesdropping the network traffic to gain admin level credentials.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
Dell · ESI (Enterprise Storage Integrator) for SAP LAMAWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →