CVE-2023-48665
 
Severity Score
7.2
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.
Dell vApp Manager, las versiones anteriores a 9.2.4.x contienen una vulnerabilidad de inyección de comandos. Un usuario malicioso remoto con altos privilegios podría explotar esta vulnerabilidad y llevar a la ejecución de comandos arbitrarios del sistema operativo en el sistema afectado.
*Credits:
Dell Technologies would like to thank 33a6099 for reporting these issues.
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-11-17 CVE Reserved
- 2023-12-14 CVE Published
- 2024-08-02 CVE Updated
- 2024-10-20 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dell Search vendor "Dell" | Solutions Enabler Virtual Appliance Search vendor "Dell" for product "Solutions Enabler Virtual Appliance" | < 9.2.4.5 Search vendor "Dell" for product "Solutions Enabler Virtual Appliance" and version " < 9.2.4.5" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Unisphere For Powermax Virtual Appliance Search vendor "Dell" for product "Unisphere For Powermax Virtual Appliance" | < 9.2.4.7 Search vendor "Dell" for product "Unisphere For Powermax Virtual Appliance" and version " < 9.2.4.7" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Powermax Os Search vendor "Dell" for product "Powermax Os" | 5978 Search vendor "Dell" for product "Powermax Os" and version "5978" | eem |
Affected
|