Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-43071

Опубликовано: 05 окт. 2023
Источник: nvd
CVSS3: 4.4
CVSS3: 5.4
EPSS Низкий

Описание

Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI. A remote authenticated attacker could potentially exploit these issues, leading to various injection type attacks.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dell:smartfabric_storage_software:*:*:*:*:*:*:*:*
Версия до 1.4.1 (исключая)

EPSS

Процентиль: 30%
0.00112
Низкий

4.4 Medium

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-1236

Связанные уязвимости

CVSS3: 4.4
github
больше 2 лет назад

Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI. A remote authenticated attacker could potentially exploit these issues, leading to various injection type attacks.

EPSS

Процентиль: 30%
0.00112
Низкий

4.4 Medium

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-1236