PT-2023-30886 · Dell · Dell Vapp Manager

33A6099

·

Publicado

2023-12-14

·

Atualizado

2023-12-19

·

CVE-2023-48664

CVSS v3.1

7.2

Alta

VetorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell vApp Manager versions prior to 9.2.4.x
Description A command injection vulnerability exists, allowing a remote malicious user with high privileges to potentially exploit this issue and execute arbitrary OS commands on the affected system.
Recommendations For versions prior to 9.2.4.x, update to version 9.2.4.x or later to resolve the issue. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation by a remote malicious user with high privileges.

Correção

OS Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-48664

Produtos afetados

Dell Vapp Manager