CVE-2023-44291
CVE-2023-44291
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7.2EPSS 1.6%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
04 dic 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance. A remote attacker with high privileges could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the underlying OS, with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Dell · Dell PowerProtect Data Manager DM5500 Appliance¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →