Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-44300

Опубликовано: 04 дек. 2023
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance. A local attacker with privileges could potentially exploit this vulnerability, leading to the disclosure of certain service credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dell:powerprotect_data_manager_dm5500_firmware:*:*:*:*:*:*:*:*
Версия до 5.14.0.0 (включая)
cpe:2.3:h:dell:powerprotect_data_manager_dm5500:-:*:*:*:*:*:*:*

EPSS

Процентиль: 27%
0.00096
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-256
CWE-522

Связанные уязвимости

CVSS3: 5.5
github
около 2 лет назад

Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in PPOE. A local attacker with privileges could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.

EPSS

Процентиль: 27%
0.00096
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-256
CWE-522