Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2rf-f8c4-3wpm

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge number of requests are sent to the switch. This is a high severity vulnerability as it allows an attacker to view sensitive data. Dell recommends customers to upgrade at the earliest opportunity.

Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge number of requests are sent to the switch. This is a high severity vulnerability as it allows an attacker to view sensitive data. Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 58%
0.0037
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-923

Связанные уязвимости

CVSS3: 9.1
nvd
почти 2 года назад

Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge number of requests are sent to the switch. This is a high severity vulnerability as it allows an attacker to view sensitive data. Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 58%
0.0037
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-923