PT-2023-8731 · Dell · Dell Powerprotect Data Manager Dm5500

Published

2023-12-04

·

Updated

2023-12-18

·

CVE-2023-44305

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell PowerProtect Data Manager DM5500 version 5.14.0.0
Description The issue is caused by a stack-based buffer overflow in the appliance. An unauthenticated remote attacker may exploit this vulnerability to crash the affected process or execute arbitrary code on the system by sending specially crafted input data.
Recommendations For Dell PowerProtect Data Manager DM5500 version 5.14.0.0, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Stack Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2024-01761
CVE-2023-44305

Affected Products

Dell Powerprotect Data Manager Dm5500