Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7fx5-87f8-g5qm

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands and possible system takeover. This is a critical vulnerability as it allows an attacker to cause severe damage. Dell recommends customers to upgrade at the earliest opportunity.

Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands and possible system takeover. This is a critical vulnerability as it allows an attacker to cause severe damage. Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 82%
0.01703
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-78

Связанные уязвимости

CVSS3: 9.8
nvd
почти 2 года назад

Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands and possible system takeover. This is a critical vulnerability as it allows an attacker to cause severe damage. Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 82%
0.01703
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-78