Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4401

Опубликовано: 05 окт. 2023
Источник: nvd
CVSS3: 7.8
CVSS3: 8.8
EPSS Низкий

Описание

Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command. A local or remote authenticated attacker could potentially exploit this vulnerability, leading to the ability to gain root-level access.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dell:smartfabric_storage_software:*:*:*:*:*:*:*:*
Версия до 1.4.1 (исключая)

EPSS

Процентиль: 62%
0.00425
Низкий

7.8 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 7.8
github
больше 2 лет назад

Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command. A local or remote authenticated attacker could potentially exploit this vulnerability, leading to the ability to gain root-level access.

EPSS

Процентиль: 62%
0.00425
Низкий

7.8 High

CVSS3

8.8 High

CVSS3

Дефекты

CWE-77
CWE-78